Out-of-bounds Write vulnerability while processing BC_TUI_CMD_SEND_RESOURCE_DATA_ARRAY command in bc_tui trustlet from Samsung Blockchain Keystore prior to version 1.3.12.1 allows local attacker to execute arbitrary code.
References
Link | Resource |
---|---|
https://security.samsungmobile.com/serviceWeb.smsb?year=2023&month=05 | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2023-05-04 21:15
Updated : 2024-02-28 20:13
NVD link : CVE-2023-21506
Mitre link : CVE-2023-21506
CVE.ORG link : CVE-2023-21506
JSON object : View
Products Affected
samsung
- samsung_blockchain_keystore
CWE
CWE-787
Out-of-bounds Write