Metrics
No CVSS v4.0
No CVSS v3.1
Attack Vector Physical
Attack Complexity High
Privileges Required None
Scope Unchanged
Confidentiality Impact Low
Integrity Impact High
Availability Impact High
User Interaction None
Access Vector Local
Access Complexity Medium
Authentication None
Confidentiality Impact Partial
Integrity Impact Partial
Availability Impact Partial
This CVE is not in the KEV list.
The EPSS score is 0.00032.
Key SSVC decision points have not yet been added.
Affected Vendors & Products
| Vendors | Products |
|---|---|
|
Nxp
Subscribe
|
I.mx 28
Subscribe
I.mx 28 Firmware
Subscribe
I.mx 50
Subscribe
I.mx 50 Firmware
Subscribe
I.mx 53
Subscribe
I.mx 53 Firmware
Subscribe
I.mx 6dual
Subscribe
I.mx 6dual Firmware
Subscribe
I.mx 6duallite
Subscribe
I.mx 6duallite Firmware
Subscribe
I.mx 6dualplus
Subscribe
I.mx 6dualplus Firmware
Subscribe
I.mx 6quad
Subscribe
I.mx 6quad Firmware
Subscribe
I.mx 6quadplus
Subscribe
I.mx 6quadplus Firmware
Subscribe
I.mx 6solo
Subscribe
I.mx 6solo Firmware
Subscribe
I.mx 6sololite
Subscribe
I.mx 6sololite Firmware
Subscribe
I.mx 6solox
Subscribe
I.mx 6solox Firmware
Subscribe
I.mx 6ull
Subscribe
I.mx 6ull Firmware
Subscribe
I.mx 6ultralite
Subscribe
I.mx 6ultralite Firmware
Subscribe
I.mx 7dual
Subscribe
I.mx 7dual Firmware
Subscribe
I.mx 7solo
Subscribe
I.mx 7solo Firmware
Subscribe
Vybrid Mvf30nn151cku26
Subscribe
Vybrid Mvf30nn151cku26 Firmware
Subscribe
Vybrid Mvf30ns151cku26
Subscribe
Vybrid Mvf30ns151cku26 Firmware
Subscribe
Vybrid Mvf50nn151cmk40
Subscribe
Vybrid Mvf50nn151cmk40 Firmware
Subscribe
Vybrid Mvf50nn151cmk50
Subscribe
Vybrid Mvf50nn151cmk50 Firmware
Subscribe
Vybrid Mvf50ns151cmk40
Subscribe
Vybrid Mvf50ns151cmk40 Firmware
Subscribe
Vybrid Mvf50ns151cmk50
Subscribe
Vybrid Mvf50ns151cmk50 Firmware
Subscribe
Vybrid Mvf51nn151cmk50
Subscribe
Vybrid Mvf51nn151cmk50 Firmware
Subscribe
Vybrid Mvf51ns151cmk50
Subscribe
Vybrid Mvf51ns151cmk50 Firmware
Subscribe
Vybrid Mvf60nn151cmk40
Subscribe
Vybrid Mvf60nn151cmk40 Firmware
Subscribe
Vybrid Mvf60nn151cmk50
Subscribe
Vybrid Mvf60nn151cmk50 Firmware
Subscribe
Vybrid Mvf60ns151cmk40
Subscribe
Vybrid Mvf60ns151cmk40 Firmware
Subscribe
Vybrid Mvf60ns151cmk50
Subscribe
Vybrid Mvf60ns151cmk50 Firmware
Subscribe
Vybrid Mvf61nn151cmk50
Subscribe
Vybrid Mvf61nn151cmk50 Firmware
Subscribe
Vybrid Mvf61ns151cmk50
Subscribe
Vybrid Mvf61ns151cmk50 Firmware
Subscribe
Vybrid Mvf62nn151cmk40
Subscribe
Vybrid Mvf62nn151cmk40 Firmware
Subscribe
|
Configuration 1 [-]
| AND |
|
Configuration 2 [-]
| AND |
|
Configuration 3 [-]
| AND |
|
Configuration 4 [-]
| AND |
|
Configuration 5 [-]
| AND |
|
Configuration 6 [-]
| AND |
|
Configuration 7 [-]
| AND |
|
Configuration 8 [-]
| AND |
|
Configuration 9 [-]
| AND |
|
Configuration 10 [-]
| AND |
|
Configuration 11 [-]
| AND |
|
Configuration 12 [-]
| AND |
|
Configuration 13 [-]
| AND |
|
Configuration 14 [-]
| AND |
|
Configuration 15 [-]
| AND |
|
Configuration 16 [-]
| AND |
|
Configuration 17 [-]
| AND |
|
Configuration 18 [-]
| AND |
|
Configuration 19 [-]
| AND |
|
Configuration 20 [-]
| AND |
|
Configuration 21 [-]
| AND |
|
Configuration 22 [-]
| AND |
|
Configuration 23 [-]
| AND |
|
Configuration 24 [-]
| AND |
|
Configuration 25 [-]
| AND |
|
Configuration 26 [-]
| AND |
|
Configuration 27 [-]
| AND |
|
Configuration 28 [-]
| AND |
|
Configuration 29 [-]
| AND |
|
Configuration 30 [-]
| AND |
|
No data.
No data.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2017-16903 | An improper certificate validation issue was discovered in NXP i.MX 28 i.MX 50, i.MX 53, i.MX 7Solo i.MX 7Dual Vybrid VF3xx, Vybrid VF5xx, Vybrid VF6xx, i.MX 6ULL, i.MX 6UltraLite, i.MX 6SoloLite, i.MX 6Solo, i.MX 6DualLite, i.MX 6SoloX, i.MX 6Dual, i.MX 6Quad, i.MX 6DualPlus, and i.MX 6QuadPlus. When the device is configured in security enabled configuration, under certain conditions it is possible to bypass the signature verification by using a specially crafted certificate leading to the execution of an unsigned image. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2024-08-05T16:19:29.197Z
Reserved: 2017-04-18T00:00:00
Link: CVE-2017-7932
No data.
Status : Deferred
Published: 2017-08-07T08:29:00.307
Modified: 2025-04-20T01:37:25.860
Link: CVE-2017-7932
No data.
OpenCVE Enrichment
No data.
EUVD