CVE-2023-27892 | ShapeShift KeepKey up to 7.6.x ethereum_contracts.c cf_confirmExecTx buffer overflow (EUVD-2023-31626)
A vulnerability marked as critical has been reported in ShapeShift KeepKey up to 7.6.x. Impacted is the function cf_confirmExecTx of the file ethereum_contracts.c. The manipulation leads to buffer overflow.
This vulnerability is listed as CVE-2023-27892. It is possible to launch the attack on the physical device. There is no available exploit.
It is suggested to upgrade the affected component.