GSD-2022-1000069

    Dashboard / Vulnerabilities / GSD-2022-1000069

    GSD-2022-1000069

    Published: 1 Feb 2022Last Modified: 14 Mar 2023

    Summary: Hardware glitching attack in Trezor One Hardware Wallet version Unknown

    Details: The Trezor Hardware Wallet One based on the ARM Cortex-M3-based STM32 F2 uses the RDP2 security level by default (in SDP2 RAM cannot be copied), but the security can be downgraded to RDP1 (where the contents of memory can be copied) via glitch injection during device power on. Please note although the timing of the glitch is largely up to chance an attacker with access to the hardware and several hours can recover it through a simple brute force attack (power wallet on, glitch, repeat until it works). The exploitation of this vulnerability has been confirmed and a Youtube video with extensive details is available. As hardware wallets are explicitly designed to prevent physical attacks from recovering seed material this represents a major vulnerability.

    Affected packages

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High
    GSD-2022-1000069 | CVE-DB