PT-2020-19877 · Oneplus · Oneplus 7 Pro

Andrew Lee-Thorp

+2

·

Published

2020-04-14

·

Updated

2021-07-21

·

CVE-2020-7958

CVSS v3.1

6.0

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions OnePlus 7 Pro versions prior to 10.0.3.GM21BA
Description An issue was found in the firmware of the affected devices, where a privileged user, such as a root user in the Rich Execution Environment (REE), can obtain bitmap images from the fingerprint sensor due to leftover debug code. The Trusted Application (TA) supports more commands than necessary for fingerprint authentication, allowing an attacker with the ability to send commands to the TA to retrieve a raw fingerprint image. This means the Trusted Execution Environment (TEE) no longer protects identifiable fingerprint data from the REE.
Recommendations For versions prior to 10.0.3.GM21BA, update to version 10.0.3.GM21BA or later to resolve the issue. As a temporary workaround, consider restricting access to the fingerprint sensor functionality to minimize the risk of exploitation.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2020-7958

Affected Products

Oneplus 7 Pro