5.3 MEDIUM
- CVSS version: 3.1
- Attack vector (AV): NETWORK
- Attack complexity (AC): LOW
- Privileges required (PR): NONE
- User interaction (UI): NONE
- Scope (S): UNCHANGED
- Confidentiality impact (C): LOW
- Integrity impact (I): NONE
- Availability impact (A): NONE
Flow-X disclosure of sensitive information to unauthenticated users
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in ABB Flow-X firmware on Flow-X embedded hardware (web service modules) allows Footprinting.This issue affects Flow-X: before 4.0.
References
Affected products
- <4.0
Matching in nixpkgs
pkgs.zd1211fw
Firmware for the ZyDAS ZD1211(b) 802.11a/b/g USB WLAN chip
pkgs.sof-firmware
Sound Open Firmware
pkgs.alsa-firmware
Soundcard firmwares from the alsa project
pkgs.ivsc-firmware
Firmware binaries for the Intel Vision Sensing Controller
-
nixos-unstable 2024-06-14
- nixpkgs-unstable 2024-06-14
- nixos-unstable-small 2024-06-14
pkgs.raspberrypifw
Firmware for the Raspberry Pi board
-
nixos-unstable 1.20241008
- nixpkgs-unstable 1.20241008
- nixos-unstable-small 1.20241008
pkgs.gnome-firmware
Tool for installing firmware on devices
pkgs.linux-firmware
Binary firmware collection packaged by kernel.org
pkgs.rt5677-firmware
Firmware for Realtek rt5677 device
pkgs.armbian-firmware
Firmware from Armbian
-
nixos-unstable 2023-09-16
- nixpkgs-unstable 2023-09-16
- nixos-unstable-small 2023-09-16
pkgs.firmware-manager
Graphical frontend for firmware management
pkgs.firmware-updater
Firmware Updater for Linux
-
nixos-unstable 0-unstable-2024-10-03
- nixpkgs-unstable 0-unstable-2024-10-03
- nixos-unstable-small 0-unstable-2024-10-03
pkgs.klipper-firmware
Firmware part of Klipper
-
nixos-unstable 0.12.0-unstable-2024-10-26
- nixpkgs-unstable 0.12.0-unstable-2024-10-26
- nixos-unstable-small 0.12.0-unstable-2024-10-26
pkgs.rtl8761b-firmware
Firmware for Realtek RTL8761b
pkgs.system76-firmware
Tools for managing firmware updates for system76 devices
pkgs.b43Firmware_5_1_138
Firmware for cards supported by the b43 kernel module
pkgs.facetimehd-firmware
facetimehd firmware
pkgs.xow_dongle-firmware
Xbox One wireless dongle firmware
pkgs.broadcom-bt-firmware
Firmware for Broadcom WIDCOMM® Bluetooth devices
-
nixos-unstable 12.0.1.1012
- nixpkgs-unstable 12.0.1.1012
- nixos-unstable-small 12.0.1.1012
pkgs.uefi-firmware-parser
Tool for parsing, extracting, and recreating UEFI firmware volumes
pkgs.nitrokey-pro-firmware
Firmware for the Nitrokey Pro device
pkgs.armTrustedFirmwareQemu
Reference implementation of secure world software for ARMv8-A
pkgs.armTrustedFirmwareS905
Reference implementation of secure world software for ARMv8-A
pkgs.libreelec-dvb-firmware
DVB firmware from LibreELEC
pkgs.armTrustedFirmwareTools
Reference implementation of secure world software for ARMv8-A
pkgs.b43Firmware_6_30_163_46
Firmware for cards supported by the b43 kernel module
-
nixos-unstable 6.30.163.46
- nixpkgs-unstable 6.30.163.46
- nixos-unstable-small 6.30.163.46
pkgs.nitrokey-fido2-firmware
Firmware for the Nitrokey FIDO2 device
-
nixos-unstable fido2-firmware-2.4.1
- nixpkgs-unstable fido2-firmware-2.4.1
- nixos-unstable-small fido2-firmware-2.4.1
pkgs.nitrokey-start-firmware
Firmware for the Nitrokey Start device
pkgs.sigrok-firmware-fx2lafw
Firmware for FX2 logic analyzers
-
nixos-unstable fx2lafw-0.1.7-unstable-2024-02-03
- nixpkgs-unstable fx2lafw-0.1.7-unstable-2024-02-03
- nixos-unstable-small fx2lafw-0.1.7-unstable-2024-02-03
pkgs.armTrustedFirmwareRK3328
Reference implementation of secure world software for ARMv8-A
-
nixos-unstable rk3328-2.10.0
- nixpkgs-unstable rk3328-2.10.0
- nixos-unstable-small rk3328-2.10.0
pkgs.armTrustedFirmwareRK3399
Reference implementation of secure world software for ARMv8-A
-
nixos-unstable rk3399-2.10.0
- nixpkgs-unstable rk3399-2.10.0
- nixos-unstable-small rk3399-2.10.0
pkgs.armTrustedFirmwareRK3588
Reference implementation of secure world software for ARMv8-A
-
nixos-unstable rk3588-2.10.0
- nixpkgs-unstable rk3588-2.10.0
- nixos-unstable-small rk3588-2.10.0
pkgs.nitrokey-storage-firmware
Firmware for the Nitrokey Storage device
pkgs.armTrustedFirmwareAllwinner
Reference implementation of secure world software for ARMv8-A
-
nixos-unstable sun50i_a64-2.10.0
- nixpkgs-unstable sun50i_a64-2.10.0
- nixos-unstable-small sun50i_a64-2.10.0
pkgs.ath9k-htc-blobless-firmware
Blobless, open source wifi firmware for ath9k_htc.ko
pkgs.raspberrypiWirelessFirmware
Firmware for builtin Wifi/Bluetooth devices in the Raspberry Pi 3+ and Zero W
-
nixos-unstable 2024-02-26
- nixpkgs-unstable 2024-02-26
- nixos-unstable-small 2024-02-26
pkgs.nitrokey-trng-rs232-firmware
Firmware for the Nitrokey TRNG RS232 device
-
nixos-unstable rs232-firmware-1.0.0
- nixpkgs-unstable rs232-firmware-1.0.0
- nixos-unstable-small rs232-firmware-1.0.0
pkgs.armTrustedFirmwareAllwinnerH6
Reference implementation of secure world software for ARMv8-A
-
nixos-unstable sun50i_h6-2.10.0
- nixpkgs-unstable sun50i_h6-2.10.0
- nixos-unstable-small sun50i_h6-2.10.0
pkgs.armTrustedFirmwareAllwinnerH616
Reference implementation of secure world software for ARMv8-A
-
nixos-unstable sun50i_h616-2.10.0
- nixpkgs-unstable sun50i_h616-2.10.0
- nixos-unstable-small sun50i_h616-2.10.0
pkgs.python311Packages.virt-firmware
Tools for virtual machine firmware volumes
pkgs.python312Packages.virt-firmware
Tools for virtual machine firmware volumes
pkgs.ath9k-htc-blobless-firmware-unstable
Blobless, open source wifi firmware for ath9k_htc.ko
-
nixos-unstable 2022-05-22
- nixpkgs-unstable 2022-05-22
- nixos-unstable-small 2022-05-22
pkgs.azure-cli-extensions.firmwareanalysis
Microsoft Azure Command-Line Tools Firmwareanalysis Extension
Package maintainers
-
@L-as Las Safin <las@protonmail.ch>
-
@lopsided98 Ben Wolsieffer <benwolsieffer@gmail.com>
-
@zaldnoay Zunway Liang <zunway@outlook.com>
-
@ulrikstrid Ulrik Strid <ulrik.strid@outlook.com>
-
@katexochen Paul Meyer <katexochen0@gmail.com>
-
@zraexy David Mell <zraexy@gmail.com>
-
@grahamc Graham Christensen <graham@grahamc.com>
-
@womfoo Kranium Gikos Mendoza <kranium@gikos.net>
-
@shlevy Shea Levy <shea@shealevy.com>
-
@mkg20001 Maciej Krüger <mkg20001+nix@gmail.com>
-
@hedning Tor Hedin Brønner <torhedinbronner@gmail.com>
-
@bobby285271 Bobby Rong <rjl931189261@126.com>
-
@jtojnar Jan Tojnar <jtojnar@gmail.com>
-
@dasj19 Daniel Șerbănescu <daniel@serbanescu.dk>
-
@vtuan10 Van Tuan Vo <mail@tuan-vo.de>
-
@kittywitch Kat Inskip <kat@inskip.me>
-
@fpletz Franz Pletz <fpletz@fnordicwalking.de>
-
@imadnyc Abdullah Imad <me@imad.nyc>
-
@kiike Enric Morales <me@enric.me>
-
@amerinor01 Alberto Merino <amerinor01@gmail.com>
-
@RaitoBezarius Ryan Lahfa <ryan@lahfa.xyz>
-
@dezgeg Tuomas Tynkkynen <tuomas.tynkkynen@iki.fi>
-
@zohl Al Zohali <zohl@fmap.me>
-
@milibopp Emilia Bopp <contact@ebopp.de>
-
@vifino Adrian Pistol <vifino@tty.sh>
-
@panicgh Nicolas Benes <nbenes.gh@xandea.de>
-
@hmenke Henri Menke <henri@henrimenke.de>
-
@lblasc Luka Blaskovic <lblasc@znode.net>
-
@evenbrenden Even Brenden <packages@anythingexternal.com>
-
@KSJ2000 KSJ2000 <katsho123@outlook.com>
-
@rhysmdnz Rhys Davies <rhys@memes.nz>