Description
An issue was discovered in certain Verbatim drives through 2022-03-31. Due to insufficient firmware validation, an attacker can store malicious firmware code for the USB-to-SATA bridge controller on the USB drive (e.g., by leveraging physical access during the supply chain). This code is then executed. This affects Keypad Secure USB 3.2 Gen 1 Drive Part Number #49428, Store 'n' Go Secure Portable HDD GD25LK01-3637-C VER4.0, Executive Fingerprint Secure SSD GDMSFE01-INI3637-C VER1.1, and Fingerprint Secure Portable Hard Drive Part Number #53650.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-32828 | An issue was discovered in certain Verbatim drives through 2022-03-31. Due to insufficient firmware validation, an attacker can store malicious firmware code for the USB-to-SATA bridge controller on the USB drive (e.g., by leveraging physical access during the supply chain). This code is then executed. This affects Keypad Secure USB 3.2 Gen 1 Drive Part Number #49428, Store 'n' Go Secure Portable HDD GD25LK01-3637-C VER4.0, Executive Fingerprint Secure SSD GDMSFE01-INI3637-C VER1.1, and Fingerprint Secure Portable Hard Drive Part Number #53650. |
References
History
No history.
Subscriptions
Verbatim
Subscribe
Executive Fingerprint Secure Ssd
Subscribe
Executive Fingerprint Secure Ssd Firmware
Subscribe
Fingerprint Secure Portable Hard Drive
Subscribe
Fingerprint Secure Portable Hard Drive Firmware
Subscribe
Keypad Secure Usb 3.2 Gen 1
Subscribe
Keypad Secure Usb 3.2 Gen 1 Firmware
Subscribe
Store \'n\' Go Secure Portable Hdd
Subscribe
Store \'n\' Go Secure Portable Hdd Firmware
Subscribe
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T05:56:15.115Z
Reserved: 2022-04-03T00:00:00.000Z
Link: CVE-2022-28383
No data.
Status : Modified
Published: 2022-06-08T16:15:08.027
Modified: 2024-11-21T06:57:15.887
Link: CVE-2022-28383
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD