operations/attestation/AttestationTask.kt in the Tangem SDK before 5.18.3 for Android has a logic flow in offline wallet attestation (genuineness check) that causes verification results to be disregarded during the first scan of a card. Exploitation may not have been possible.
References
Configurations
No configuration.
History
08 Mar 2025, 00:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-03-08 00:15
Updated : 2025-03-08 00:15
NVD link : CVE-2025-27839
Mitre link : CVE-2025-27839
CVE.ORG link : CVE-2025-27839
JSON object : View
Products Affected
No product.
CWE
CWE-1025
Comparison Using Wrong Factors