CVE-2022-22819

NXP LPC55S66JBD64, LPC55S66JBD100, LPC55S66JEV98, LPC55S69JBD64, LPC55S69JBD100, and LPC55S69JEV98 microcontrollers (ROM version 1B) have a buffer overflow in parsing SB2 updates before the signature is verified. This can allow an attacker to achieve non-persistent code execution via a crafted unsigned update.
References
Link Resource
https://oxide.computer/blog/another-vulnerability-in-the-lpc55s69-rom Exploit Third Party Advisory
https://www.nxp.com Vendor Advisory
Configurations

Configuration 1


Information

Published : 2022-03-23 10:15

Updated : 2022-04-15 06:16


NVD link : CVE-2022-22819

Mitre link : CVE-2022-22819

Products Affected
No products.
CWE