Vulnerability Description
Certain 5400 RPM hard drives, for laptops and other PCs in approximately 2005 and later, allow physically proximate attackers to cause a denial of service (device malfunction and system crash) via a resonant-frequency attack with the audio signal from the Rhythm Nation music video. A reported product is Seagate STDT4000100 763649053447.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| * | 5400Rmp Oem Harddrive | - |
References
- https://devblogs.microsoft.com/oldnewthing/20220816-00/?p=106994Issue TrackingThird Party Advisory
- https://www.seagate.com/support/security/
- https://www.youtube.com/watch?v=nSvu9IDUjZw&t=416s
- https://devblogs.microsoft.com/oldnewthing/20220816-00/?p=106994Issue TrackingThird Party Advisory
- https://www.seagate.com/support/security/
- https://www.youtube.com/watch?v=nSvu9IDUjZw&t=416s
FAQ
What is CVE-2022-38392?
CVE-2022-38392 is a vulnerability with a CVSS score of 5.3 (MEDIUM). Certain 5400 RPM hard drives, for laptops and other PCs in approximately 2005 and later, allow physically proximate attackers to cause a denial of service (device malfunction and system crash) via a r...
How severe is CVE-2022-38392?
CVE-2022-38392 has been rated MEDIUM with a CVSS base score of 5.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-38392?
Check the references section above for vendor advisories and patch information. Affected products include: * 5400Rmp Oem Harddrive.