First published: Thu Mar 18 2021(Updated: )
The iOS and macOS apps before 1.4.1 for the Western Digital G-Technology ArmorLock NVMe SSD store keys insecurely. They choose a non-preferred storage mechanism if the device has Secure Enclave support but lacks biometric authentication hardware.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
<1.4.1 | ||
<1.4.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2021-28653.
The severity of CVE-2021-28653 is medium with a CVSSv3 score of 6.5.
The iOS and macOS apps before version 1.4.1 for the Western Digital G-Technology ArmorLock NVMe SSD are affected by CVE-2021-28653.
CVE-2021-28653 affects the Western Digital G-Technology ArmorLock NVMe SSD by storing keys insecurely and choosing a non-preferred storage mechanism.
Yes, a fix is available for CVE-2021-28653. Users should update their iOS and macOS apps to version 1.4.1 or newer.