CVE-2025-27839

operations/attestation/AttestationTask.kt in the Tangem SDK before 5.18.3 for Android has a logic flow in offline wallet attestation (genuineness check) that causes verification results to be disregarded during the first scan of a card. Exploitation may not have been possible.
Configurations

No configuration.

History

08 Mar 2025, 00:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-08 00:15

Updated : 2025-03-08 00:15


NVD link : CVE-2025-27839

Mitre link : CVE-2025-27839

CVE.ORG link : CVE-2025-27839


JSON object : View

Products Affected

No product.

CWE
CWE-1025

Comparison Using Wrong Factors