CVE-2017-11400: High severity Belden Tofino Xenon Security Appliance Firmware vulnerability
An issue has been discovered on the Belden Hirschmann Tofino Xenon Security Appliance before 03.2.00. An incomplete firmware signature allows a local attacker to upgrade the equipment (kernel, file system) with unsigned, attacker-controlled, data. This occurs because the applianceconfig file is signed but the .tar.sec file is unsigned.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-11400?
The severity of CVE-2017-11400 is high.
How does CVE-2017-11400 affect Belden Tofino Xenon Security Appliance Firmware?
CVE-2017-11400 affects Belden Tofino Xenon Security Appliance Firmware version up to 3.1.0.
How can a local attacker exploit CVE-2017-11400?
A local attacker can exploit CVE-2017-11400 by upgrading the equipment (kernel, file system) with unsigned, attacker-controlled data.
What is the CWE of CVE-2017-11400?
The CWE of CVE-2017-11400 is CWE-347.
Where can I find more information about CVE-2017-11400?
You can find more information about CVE-2017-11400 in the following references: [GitHub Advisory](https://github.com/airbus-seclab/security-advisories/blob/master/belden/tofino.txt) and [Belden Security Bulletin](https://www.belden.com/hubfs/support/security/bulletins/Belden-Security-Bulletin-BSECV-2017-14-1v1-1.pdf).