VYPR
Unrated severityNVD Advisory· Published Dec 1, 2021· Updated Aug 4, 2024

CVE-2021-40154

CVE-2021-40154

Description

NXP LPC55S69 devices before A3 have a buffer over-read via a crafted wlength value in a GET Descriptor Configuration request during use of USB In-System Programming (ISP) mode. This discloses protected flash memory.

Affected products

2
  • NXP/LPC55S69 devicesdescription
  • Nxp/LPC55S69llm-create
    Range: <A3

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.