VYPR
Medium severity6.6NVD Advisory· Published May 7, 2022· Updated Jun 17, 2026

CVE-2022-30330

CVE-2022-30330

Description

In the KeepKey firmware before 7.3.2,Flaws in the supervisor interface can be exploited to bypass important security restrictions on firmware operations. Using these flaws, malicious firmware code can elevate privileges, permanently make the device inoperable or overwrite the trusted bootloader code to compromise the hardware wallet across reboots or storage wipes.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • cpe:2.3:o:keepkey:keepkey_firmware:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:keepkey:keepkey_firmware:*:*:*:*:*:*:*:*range: <7.3.2
    • (no CPE)range: <7.3.2
  • KeepKey/KeepKey firmwaredescription
  • KeepKey/KeepKeyllm-fuzzy
    Range: <7.3.2

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.