TROYANOSYVIRUS
Volver a CVEs

CVE-2023-35818

MEDIUM
6.8

Descripcion

An issue was discovered on Espressif ESP32 3.0 (ESP32_rev300 ROM) devices. An EMFI attack on ECO3 provides the attacker with a capability to influence the PC value at the CPU context level, regardless of Secure Boot and Flash Encryption status. By using this capability, the attacker can exploit another behavior in the chip to gain unauthorized access to the ROM download mode. Access to ROM download mode may be further exploited to read the encrypted flash content in cleartext format or execute stub code.

Detalles CVE

Puntuacion CVSS v3.16.8
SeveridadMEDIUM
Vector CVSSCVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vector de ataquePHYSICAL
ComplejidadLOW
Privilegios requeridosNONE
Interaccion usuarioNONE
Publicado7/17/2023
Ultima modificacion11/21/2024
Fuentenvd
Avistamientos honeypot0

Productos afectados

espressif:esp-eyeespressif:esp-eye_firmwareespressif:esp32-d0wd-v3espressif:esp32-d0wd-v3_firmwareespressif:esp32-d0wdr2-v3espressif:esp32-d0wdr2-v3_firmwareespressif:esp32-devkitcespressif:esp32-devkitc_firmwareespressif:esp32-devkitm-1espressif:esp32-devkitm-1_firmwareespressif:esp32-mini-1espressif:esp32-mini-1_firmwareespressif:esp32-mini-1uespressif:esp32-mini-1u_firmwareespressif:esp32-pico-d4espressif:esp32-pico-d4_firmwareespressif:esp32-pico-kitespressif:esp32-pico-kit_firmwareespressif:esp32-pico-mini-02espressif:esp32-pico-mini-02_firmwareespressif:esp32-pico-mini-02uespressif:esp32-pico-mini-02u_firmwareespressif:esp32-pico-v3espressif:esp32-pico-v3-02espressif:esp32-pico-v3-02_firmwareespressif:esp32-pico-v3-zeroespressif:esp32-pico-v3-zero-devkitespressif:esp32-pico-v3-zero-devkit_firmwareespressif:esp32-pico-v3-zero_firmwareespressif:esp32-pico-v3_firmwareespressif:esp32-u4wdhespressif:esp32-u4wdh_firmwareespressif:esp32-vaquita-dspgespressif:esp32-vaquita-dspg_firmwareespressif:esp32-wroom-32eespressif:esp32-wroom-32e_firmwareespressif:esp32-wroom-32ueespressif:esp32-wroom-32ue_firmwareespressif:esp32-wroom-daespressif:esp32-wroom-da_firmwareespressif:esp32-wrover-eespressif:esp32-wrover-e_firmwareespressif:esp32-wrover-ieespressif:esp32-wrover-ie_firmware

Correlaciones IOC

Sin correlaciones registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.