CVE-2020-29438

Tesla Model X vehicles before 2020-11-23 have key fobs that accept firmware updates without signature verification. This allows attackers to construct firmware that retrieves an unlock code from a secure enclave chip.
References
Link Resource
https://www.wired.com/story/tesla-model-x-hack-bluetooth/ Exploit Press/Media Coverage
Configurations

Configuration 1


Information

Published : 2020-11-30 10:15

Updated : 2020-12-04 07:53


NVD link : CVE-2020-29438

Mitre link : CVE-2020-29438

Products Affected
No products.
CWE
CWE-347

Improper Verification of Cryptographic Signature