Incomplete Cleanup vulnerability in ECOS Secure Boot Stick (aka SBS) 5.6.5 allows an attacker to compromise authentication and encryption keys via a compromised host PC after a reset.
The product does not properly "clean up" and remove temporary or supporting resources after they have been used.
Link | Tags |
---|---|
https://telematik.prakinf.tu-ilmenau.de/ecos-sbs/advisory.html | third party advisory mitigation |