Critical severity9.8NVD Advisory· Published Sep 12, 2019· Updated Jun 17, 2026
CVE-2019-14237
CVE-2019-14237
Description
On NXP Kinetis KV1x, Kinetis KV3x, and Kinetis K8x devices, Flash Access Controls (FAC) (a software IP protection method for execute-only access) can be defeated by observing CPU registers and the effect of code/instruction execution.
Affected products
6- cpe:2.3:o:nxp:kinetis_k8x_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:nxp:kinetis_kv1x_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:nxp:kinetis_kv3x_firmware:-:*:*:*:*:*:*:*
- NXP/Kinetis KV1xdescription
Patches
Vulnerability mechanics
References
1- www.usenix.org/system/files/woot19-paper_schink.pdfnvdExploitMitigationThird Party Advisory
News mentions
0No linked articles in our index yet.