TROYANOSYVIRUS
Retour aux CVEs

CVE-2023-35818

MEDIUM
6.8

Description

An issue was discovered on Espressif ESP32 3.0 (ESP32_rev300 ROM) devices. An EMFI attack on ECO3 provides the attacker with a capability to influence the PC value at the CPU context level, regardless of Secure Boot and Flash Encryption status. By using this capability, the attacker can exploit another behavior in the chip to gain unauthorized access to the ROM download mode. Access to ROM download mode may be further exploited to read the encrypted flash content in cleartext format or execute stub code.

Details CVE

Score CVSS v3.16.8
SeveriteMEDIUM
Vecteur CVSSCVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vecteur d'attaquePHYSICAL
ComplexiteLOW
Privileges requisNONE
Interaction utilisateurNONE
Publie7/17/2023
Derniere modification11/21/2024
Sourcenvd
Observations honeypot0

Produits affectes

espressif:esp-eyeespressif:esp-eye_firmwareespressif:esp32-d0wd-v3espressif:esp32-d0wd-v3_firmwareespressif:esp32-d0wdr2-v3espressif:esp32-d0wdr2-v3_firmwareespressif:esp32-devkitcespressif:esp32-devkitc_firmwareespressif:esp32-devkitm-1espressif:esp32-devkitm-1_firmwareespressif:esp32-mini-1espressif:esp32-mini-1_firmwareespressif:esp32-mini-1uespressif:esp32-mini-1u_firmwareespressif:esp32-pico-d4espressif:esp32-pico-d4_firmwareespressif:esp32-pico-kitespressif:esp32-pico-kit_firmwareespressif:esp32-pico-mini-02espressif:esp32-pico-mini-02_firmwareespressif:esp32-pico-mini-02uespressif:esp32-pico-mini-02u_firmwareespressif:esp32-pico-v3espressif:esp32-pico-v3-02espressif:esp32-pico-v3-02_firmwareespressif:esp32-pico-v3-zeroespressif:esp32-pico-v3-zero-devkitespressif:esp32-pico-v3-zero-devkit_firmwareespressif:esp32-pico-v3-zero_firmwareespressif:esp32-pico-v3_firmwareespressif:esp32-u4wdhespressif:esp32-u4wdh_firmwareespressif:esp32-vaquita-dspgespressif:esp32-vaquita-dspg_firmwareespressif:esp32-wroom-32eespressif:esp32-wroom-32e_firmwareespressif:esp32-wroom-32ueespressif:esp32-wroom-32ue_firmwareespressif:esp32-wroom-daespressif:esp32-wroom-da_firmwareespressif:esp32-wrover-eespressif:esp32-wrover-e_firmwareespressif:esp32-wrover-ieespressif:esp32-wrover-ie_firmware

Correlations IOC

Aucune correlation enregistree

This product uses data from the NVD API but is not endorsed or certified by the NVD.