Hardcoded AES key to encrypt cardemulation PINs in NFC prior to SMR Jan-2023 Release 1 allows attackers to access cardemulation PIN.
References
Link | Resource |
---|---|
https://security.samsungmobile.com/securityUpdate.smsb?year=2023&month=01 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2023-02-09 19:15
Updated : 2024-02-28 19:51
NVD link : CVE-2023-21426
Mitre link : CVE-2023-21426
CVE.ORG link : CVE-2023-21426
JSON object : View
Products Affected
samsung
- android
CWE
CWE-798
Use of Hard-coded Credentials