Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered on Samsung 840 EVO and 850 EVO devices (only in "ATA high" mode, not vulnerable in "TCG" or "ATA max" mode), Samsung T3 and T5 portable drives, and Crucial MX100, MX200 and MX300 devices. Absence of a cryptographic link between the password and the Disk Encryption Key allows attackers with privileged access to SSD firmware full access to encrypted data.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Micron Crucial MX100多款产品和Samsung T3多款产品安全漏洞
Vulnerability Description
Micron Crucial MX100、MX200和MX300都是美国镁光(Micron)公司的银盘驱动器。Samsung T3等都是韩国三星(Samsung)公司的硬盘驱动器。 自加密磁盘(SED)技术中的ATA Security或TCG Opal Standards的实现过程存在安全漏洞,该漏洞源于用户密码和用于加密用户数据的密钥未做密码绑定。物理位置接近的攻击者可利用该漏洞获取密钥,进而解密信息。以下产品和版本受到影响:Micron Crucial MX100驱动,MX200驱动,MX300驱动;
CVSS Information
N/A
Vulnerability Type
N/A