PT-2020-19877 · Oneplus · Oneplus 7 Pro
Andrew Lee-Thorp
+2
·
Published
2020-04-14
·
Updated
2021-07-21
·
CVE-2020-7958
CVSS v3.1
6.0
Medium
| Vector | AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
OnePlus 7 Pro versions prior to 10.0.3.GM21BA
Description
An issue was found in the firmware of the affected devices, where a privileged user, such as a root user in the Rich Execution Environment (REE), can obtain bitmap images from the fingerprint sensor due to leftover debug code. The Trusted Application (TA) supports more commands than necessary for fingerprint authentication, allowing an attacker with the ability to send commands to the TA to retrieve a raw fingerprint image. This means the Trusted Execution Environment (TEE) no longer protects identifiable fingerprint data from the REE.
Recommendations
For versions prior to 10.0.3.GM21BA, update to version 10.0.3.GM21BA or later to resolve the issue. As a temporary workaround, consider restricting access to the fingerprint sensor functionality to minimize the risk of exploitation.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Oneplus 7 Pro