First published: Fri Feb 20 2009(Updated: )
Toshiba Face Recognition 2.0.2.32 allows physically proximate attackers to obtain notebook access by presenting a large number of images for which the viewpoint and lighting have been modified to match a stored image of the authorized notebook user.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Toshiba Face Recognition | =2.0.2.32 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-0657 is a vulnerability in Toshiba Face Recognition 2.0.2.32 that allows attackers to bypass security by presenting modified images that match the authorized user's stored image.
The implications of CVE-2009-0657 include unauthorized access to the notebook by physically proximate attackers using altered images to spoof facial recognition.
To fix CVE-2009-0657, it is recommended to update Toshiba Face Recognition software to the latest version or disable the facial recognition feature.
CVE-2009-0657 specifically affects Toshiba Face Recognition version 2.0.2.32.
No, CVE-2009-0657 requires physical proximity to the device for exploitation.