The signature check in the Nokia ASIK AirScale system module version 474021A.101 can be bypassed allowing an attacker to run modified firmware. This could result in the execution of a malicious kernel, arbitrary programs, or modified Nokia programs.



Advisories

No advisories yet.

Fixes

Solution

Nokia has released technical support notes containing mitigation instructions for impacted Nokia users. Users should contact Nokia https://customer.nokia.com/support/s/  to receive further information.


Workaround

No workaround given by the vendor.

History

Thu, 16 Jan 2025 22:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2025-01-16T22:02:55.884Z

Reserved: 2022-07-19T21:43:11.547Z

Link: CVE-2022-2484

cve-icon Vulnrichment

Updated: 2024-08-03T00:39:07.812Z

cve-icon NVD

Status : Modified

Published: 2023-01-06T22:15:09.240

Modified: 2024-11-21T07:01:05.420

Link: CVE-2022-2484

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.