AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2022-45163

MEDIUM · CVSS 5.3 EPSS 0.57%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-11-18 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 5.3. See the original NVD description below for full technical details.

CVE
CVE-2022-45163
Severity
MEDIUM
CVSS
5.3
EPSS
0.57%

Original NVD Description

An information-disclosure vulnerability exists on select NXP devices when configured in Serial Download Protocol (SDP) mode: i.MX RT 1010, i.MX RT 1015, i.MX RT 1020, i.MX RT 1050, i.MX RT 1060, i.MX 6 Family, i.MX 7Dual/Solo, i.MX 7ULP, i.MX 8M Quad, i.MX 8M Mini, and Vybrid. In a device security-enabled configuration, memory contents could potentially leak to physically proximate attackers via the respective SDP port in cold and warm boot attacks. (The recommended mitigation is to completely disable the SDP mode by programming a one-time programmable eFUSE. Customers can contact NXP for additional information.)

Related CVEs

Other vulnerabilities affecting the same vendor(s)