Vulnerability Description
The Secure Monitor in Microchip Atmel ATSAMA5 products use a hardcoded key to encrypt and authenticate secure applets.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microchip | Atsama5D21C-Cu Firmware | - |
| Microchip | Atsama5D21C-Cu | - |
| Microchip | Atsama5D21C-Cur Firmware | - |
| Microchip | Atsama5D21C-Cur | - |
| Microchip | Atsama5D22C-Cn Firmware | - |
| Microchip | Atsama5D22C-Cn | - |
| Microchip | Atsama5D22C-Cnr Firmware | - |
| Microchip | Atsama5D22C-Cnr | - |
| Microchip | Atsama5D22C-Cu Firmware | - |
| Microchip | Atsama5D22C-Cu | - |
| Microchip | Atsama5D22C-Cur Firmware | - |
| Microchip | Atsama5D22C-Cur | - |
| Microchip | Atsama5D23C-Cn Firmware | - |
| Microchip | Atsama5D23C-Cn | - |
| Microchip | Atsama5D23C-Cnr Firmware | - |
| Microchip | Atsama5D23C-Cnr | - |
| Microchip | Atsama5D23C-Cu Firmware | - |
| Microchip | Atsama5D23C-Cu | - |
| Microchip | Atsama5D23C-Cur Firmware | - |
| Microchip | Atsama5D23C-Cur | - |
Related Weaknesses (CWE)
References
- https://labs.f-secure.com/advisories/microchip-atsama5-soc-multiple-vulnerabilitThird Party Advisory
- https://labs.f-secure.com/advisories/microchip-atsama5-soc-multiple-vulnerabilitThird Party Advisory
FAQ
What is CVE-2020-12789?
CVE-2020-12789 is a vulnerability with a CVSS score of 7.5 (HIGH). The Secure Monitor in Microchip Atmel ATSAMA5 products use a hardcoded key to encrypt and authenticate secure applets.
How severe is CVE-2020-12789?
CVE-2020-12789 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-12789?
Check the references section above for vendor advisories and patch information. Affected products include: Microchip Atsama5D21C-Cu Firmware, Microchip Atsama5D21C-Cu, Microchip Atsama5D21C-Cur Firmware, Microchip Atsama5D21C-Cur, Microchip Atsama5D22C-Cn Firmware.