An issue was discovered in Samsung eMMC with KLMAG2GE4A and KLM8G1WEMB firmware. Code bypass through Electromagnetic Fault Injection allows an attacker to successfully authenticate and write to the RPMB (Replay Protected Memory Block) area without possessing secret information.
History

Wed, 30 Oct 2024 17:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-295

Wed, 16 Oct 2024 18:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 15 Oct 2024 21:15:00 +0000

Type Values Removed Values Added
Description An issue was discovered in Samsung eMMC with KLMAG2GE4A and KLM8G1WEMB firmware. Code bypass through Electromagnetic Fault Injection allows an attacker to successfully authenticate and write to the RPMB (Replay Protected Memory Block) area without possessing secret information.
References
Metrics cvssV3_1

{'score': 4.9, 'vector': 'CVSS:3.1/AC:H/AV:P/A:N/C:N/I:H/PR:N/S:C/UI:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2024-10-15T00:00:00

Updated: 2024-10-30T16:22:20.606Z

Reserved: 2024-04-08T00:00:00

Link: CVE-2024-31955

cve-icon Vulnrichment

Updated: 2024-10-16T18:09:44.578Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-10-15T21:15:10.690

Modified: 2024-10-30T17:35:07.267

Link: CVE-2024-31955

cve-icon Redhat

No data.