CVE-2021-31532
6.8
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 0.9 / Impact: 5.9
Source: NVD
Description
NXP LPC55S6x microcontrollers (0A and 1B), i.MX RT500 (silicon rev B1 and B2), i.MX RT600 (silicon rev A0, B0), LPC55S6x, LPC55S2x, LPC552x (silicon rev 0A, 1B), LPC55S1x, LPC551x (silicon rev 0A) and LPC55S0x, LPC550x (silicon rev 0A) include an undocumented ROM patch peripheral that allows unsigned, non-persistent modification of the internal ROM.
Affected (24)
Products: Nxp: Lpc55s69jbd100 Firmware, Lpc55s66jbd100 Firmware, Lpc55s69jev98 Firmware, Lpcs66jev98 Firmware, Lpc55s69jbd64 Firmware, Lpcs66jbd64 Firmware, I.mx Rt500 Firmware, I.mx Rt600 Firmware, Lpc55s28 Firmware, Lpc55s26 Firmware, Lpc5528 Firmware, Lpc5526 Firmware, Lpc55s16jbd100 Firmware, Lpc55s16jev98 Firmware, Lpc55s16jbd64 Firmware, Lpc55s14jbd100 Firmware, Lpc55s14jbd64 Firmware, Lpc5516jbd100 Firmware, Lpc5516jev98 Firmware, Lpc5516jbd64 Firmware, Lpc5514jbd100 Firmware, Lpc5514jbd64 Firmware, Lpc5512jbd100 Firmware, Lpc5512jbd64 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Nxp Lpc55s69jbd100 | Version 0a |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Nxp Lpc55s66jbd100 | Version 0a |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Nxp Lpc55s69jev98 | Version 0a |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Nxp Lpcs66jev98 | Version 0a |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Nxp Lpc55s69jbd64 | Version 0a |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Nxp Lpcs66jbd64 | Version 0a |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Nxp I.mx Rt500 | Version b1 |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Nxp I.mx Rt600 | Version a0 |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Nxp Lpc55s28 | Version 0a |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Nxp Lpc55s26 | Version 0a |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Nxp Lpc5528 | Version 0a |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Nxp Lpc5526 | Version 0a |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Nxp Lpc55s16jbd100 | Version 0a |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Nxp Lpc55s16jev98 | Version 0a |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Nxp Lpc55s16jbd64 | Version 0a |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Nxp Lpc55s14jbd100 | Version 0a |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Nxp Lpc55s14jbd64 | Version 0a |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Nxp Lpc5516jbd100 | Version 0a |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Nxp Lpc5516jev98 | Version 0a |
Configuration T
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Nxp Lpc5516jbd64 | Version 0a |
Configuration U
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Nxp Lpc5514jbd100 | Version 0a |
Configuration V
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Nxp Lpc5514jbd64 | Version 0a |
Configuration W
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Nxp Lpc5512jbd100 | Version 0a |
Configuration X
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Nxp Lpc5512jbd64 | Version 0a |
References (4)
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory
Timeline
No history available yet.