The tested version of Dominion Voting Systems ImageCast X does not validate application signatures to a trusted root certificate. Use of a trusted root certificate ensures software installed on a device is traceable to, or verifiable against, a cryptographic key provided by the manufacturer to detect tampering. An attacker could leverage this vulnerability to install malicious code, which could also be spread to other vulnerable ImageCast X devices via removable media.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.cisa.gov/uscert/ics/advisories/icsa-22-154-01 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2022-06-24T15:00:22.129617Z
Updated: 2024-09-17T00:17:12.293Z
Reserved: 2022-05-16T00:00:00
Link: CVE-2022-1739
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-06-24T15:15:09.673
Modified: 2024-11-21T06:41:21.720
Link: CVE-2022-1739
Redhat
No data.