ZeroHour

CVE-2021-31532

PoC
CVSS 3.1
6.8 medium
EPSS
<1%p38
Published
()
Modified
Description

NXP LPC55S6x microcontrollers (0A and 1B), i.MX RT500 (silicon rev B1 and B2), i.MX RT600 (silicon rev A0, B0), LPC55S6x, LPC55S2x, LPC552x (silicon rev 0A, 1B), LPC55S1x, LPC551x (silicon rev 0A) and LPC55S0x, LPC550x (silicon rev 0A) include an undocumented ROM patch peripheral that allows unsigned, non-persistent modification of the internal ROM.

Vendors
nxp
Products
lpc55s69jbd100 firmware, lpc55s66jbd100 firmware, lpc55s69jev98 firmware, lpcs66jev98 firmware, lpc55s69jbd64 firmware, lpcs66jbd64 firmware, i.mx rt500 firmware, i.mx rt600 firmware, lpc55s28 firmware, lpc55s26 firmware, lpc5528 firmware, lpc5526 firmware
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.