Headline
CVE-2023-33222
When handling contactless cards, usage of a specific function to get additional information from the card which doesn’t check the boundary on the data received while reading. This allows a stack-based buffer overflow that could lead to a potential Remote Code Execution on the targeted device
%PDF-1.7 %���� 1 0 obj <>/Metadata 416 0 R/ViewerPreferences 417 0 R>> endobj 2 0 obj <> endobj 3 0 obj <> endobj 4 0 obj <>/ExtGState<>/Font<>/ProcSet[/PDF/Text/ImageB/ImageC/ImageI] >>/MediaBox[ 0 0 595.32 841.92] /Contents 5 0 R/Group<>/Tabs/S/StructParents 0>> endobj 5 0 obj <> stream x��]]s�8�}OU�����1E|����rl’�[�����n��bӎ�ڒ#�������� %J"���IE���h�O 48��Ƿ��9�����|>���ݰ?������_�������n<��������o��N���_ث�c6xs�����/��|!M$�N"-�4i�,�i��Y����e��1��’��/_���̰�)�-ϐ�4҆IG