logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2023-26244

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2023-26244

Description:
An issue was discovered in the Hyundai Gen5W_L in-vehicle infotainment system AE_E_PE_EUR.S5W_L001.001.211214. The AppDMClient binary file, which is used during the firmware installation process, can be modified by an attacker to bypass the digital signature check of AppUpgrade and .lge.upgrade.xml files, which are used during the firmware installation process. This indirectly allows an attacker to use a custom version of AppUpgrade and .lge.upgrade.xml files.
Last updated date:
05/08/2023
Type:
exploit
Confidence:
HIGH
Date of publishing:
05/08/2023
Reference url to background

https://sowhat.iit.cnr.it:8443/can-work/chimaera

Type:
exploit
Confidence:
HIGH
Date of publishing:
05/08/2023
Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy