Description
An improper certificate validation issue was discovered in NXP i.MX 28 i.MX 50, i.MX 53, i.MX 7Solo i.MX 7Dual Vybrid VF3xx, Vybrid VF5xx, Vybrid VF6xx, i.MX 6ULL, i.MX 6UltraLite, i.MX 6SoloLite, i.MX 6Solo, i.MX 6DualLite, i.MX 6SoloX, i.MX 6Dual, i.MX 6Quad, i.MX 6DualPlus, and i.MX 6QuadPlus. When the device is configured in security enabled configuration, under certain conditions it is possible to bypass the signature verification by using a specially crafted certificate leading to the execution of an unsigned image.
Published: 2017-08-07
Score: 6.0 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2017-16903 An improper certificate validation issue was discovered in NXP i.MX 28 i.MX 50, i.MX 53, i.MX 7Solo i.MX 7Dual Vybrid VF3xx, Vybrid VF5xx, Vybrid VF6xx, i.MX 6ULL, i.MX 6UltraLite, i.MX 6SoloLite, i.MX 6Solo, i.MX 6DualLite, i.MX 6SoloX, i.MX 6Dual, i.MX 6Quad, i.MX 6DualPlus, and i.MX 6QuadPlus. When the device is configured in security enabled configuration, under certain conditions it is possible to bypass the signature verification by using a specially crafted certificate leading to the execution of an unsigned image.
History

No history.

Subscriptions

Nxp I.mx 28 I.mx 28 Firmware I.mx 50 I.mx 50 Firmware I.mx 53 I.mx 53 Firmware I.mx 6dual I.mx 6dual Firmware I.mx 6duallite I.mx 6duallite Firmware I.mx 6dualplus I.mx 6dualplus Firmware I.mx 6quad I.mx 6quad Firmware I.mx 6quadplus I.mx 6quadplus Firmware I.mx 6solo I.mx 6solo Firmware I.mx 6sololite I.mx 6sololite Firmware I.mx 6solox I.mx 6solox Firmware I.mx 6ull I.mx 6ull Firmware I.mx 6ultralite I.mx 6ultralite Firmware I.mx 7dual I.mx 7dual Firmware I.mx 7solo I.mx 7solo Firmware Vybrid Mvf30nn151cku26 Vybrid Mvf30nn151cku26 Firmware Vybrid Mvf30ns151cku26 Vybrid Mvf30ns151cku26 Firmware Vybrid Mvf50nn151cmk40 Vybrid Mvf50nn151cmk40 Firmware Vybrid Mvf50nn151cmk50 Vybrid Mvf50nn151cmk50 Firmware Vybrid Mvf50ns151cmk40 Vybrid Mvf50ns151cmk40 Firmware Vybrid Mvf50ns151cmk50 Vybrid Mvf50ns151cmk50 Firmware Vybrid Mvf51nn151cmk50 Vybrid Mvf51nn151cmk50 Firmware Vybrid Mvf51ns151cmk50 Vybrid Mvf51ns151cmk50 Firmware Vybrid Mvf60nn151cmk40 Vybrid Mvf60nn151cmk40 Firmware Vybrid Mvf60nn151cmk50 Vybrid Mvf60nn151cmk50 Firmware Vybrid Mvf60ns151cmk40 Vybrid Mvf60ns151cmk40 Firmware Vybrid Mvf60ns151cmk50 Vybrid Mvf60ns151cmk50 Firmware Vybrid Mvf61nn151cmk50 Vybrid Mvf61nn151cmk50 Firmware Vybrid Mvf61ns151cmk50 Vybrid Mvf61ns151cmk50 Firmware Vybrid Mvf62nn151cmk40 Vybrid Mvf62nn151cmk40 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2024-08-05T16:19:29.197Z

Reserved: 2017-04-18T00:00:00.000Z

Link: CVE-2017-7932

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2017-08-07T08:29:00.307

Modified: 2025-04-20T01:37:25.860

Link: CVE-2017-7932

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses