CVE-2018-6875

Severity CVSS v4.0:
Pending analysis
Type:
CWE-134 Format String Vulnerability
Publication date:
14/03/2018
Last modified:
07/01/2020

Description

Format String vulnerability in KeepKey version 4.0.0 allows attackers to trigger information display (of information that should not be accessible), related to text containing characters that the device's font lacks.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:shapeshift:keepkey_firmware:4.0.0:*:*:*:*:*:*:*
cpe:2.3:h:keepkey:keepkey:-:*:*:*:*:*:*:*