Vulnerabilities > Shapeshift > Keepkey Firmware > 1.1.0

DATE CVE VULNERABILITY TITLE RISK
2019-12-06 CVE-2019-18672 Improper Validation of Integrity Check Value vulnerability in Shapeshift Keepkey Firmware
Insufficient checks in the finite state machine of the ShapeShift KeepKey hardware wallet before firmware 6.2.2 allow a partial reset of cryptographic secrets to known values via crafted messages.
network
low complexity
shapeshift CWE-354
5.0