CVE-2015-7267
Last modified
CVE-2015-7267 is a vulnerability of currently unknown severity. Samsung 850 Pro and PM851 solid-state drives and Seagate ST500LT015 and ST500LT025 hard disk drives, when in sleep mode and operating in Opal or eDrive mode on Lenovo ThinkPad T440s laptops with BIOS 2.32; ThinkPad W541 laptops with BIOS 2.21; Dell Latitude E6410 laptops with BIOS A16; or Latitude E6430 laptops with BIOS A16, allow physically proximate attackers to bypass self-encrypting drive (SED) protection by leveraging failure to detect when SATA drives are unplugged in Sleep Mode, aka a "Hot Plug attack.". EPSS estimates a 0.33% chance of exploitation in the next 30 days.
Description
Samsung 850 Pro and PM851 solid-state drives and Seagate ST500LT015 and ST500LT025 hard disk drives, when in sleep mode and operating in Opal or eDrive mode on Lenovo ThinkPad T440s laptops with BIOS 2.32; ThinkPad W541 laptops with BIOS 2.21; Dell Latitude E6410 laptops with BIOS A16; or Latitude E6430 laptops with BIOS A16, allow physically proximate attackers to bypass self-encrypting drive (SED) protection by leveraging failure to detect when SATA drives are unplugged in Sleep Mode, aka a "Hot Plug attack."
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Samsung | 850 Pro Firmware | All versions |
| Samsung | Pm851 Firmware | All versions |
| Seagate | St500lt015 Firmware | All versions |
| Seagate | St500lt025 Firmware | All versions |
References
- https://www.blackhat.com/docs/eu-15/materials/eu-15-Boteanu-Bypassing-Self-Encrypting-Drives-SED-In-Enterprise-Environments-wp.pdfTechnical Description, Third Party Advisory
- https://www.infoworld.com/article/3004913/encryption/self-encrypting-drives-are-hardly-any-better-than-software-based-encryption.htmlTechnical Description, Third Party Advisory
- https://www.blackhat.com/docs/eu-15/materials/eu-15-Boteanu-Bypassing-Self-Encrypting-Drives-SED-In-Enterprise-Environments-wp.pdfTechnical Description, Third Party Advisory
- https://www.infoworld.com/article/3004913/encryption/self-encrypting-drives-are-hardly-any-better-than-software-based-encryption.htmlTechnical Description, Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2015-7267?
How severe is CVE-2015-7267?
How do I fix CVE-2015-7267?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2015
- CVE-2015-7261The FTP service in QNAP iArtist Lite before 1.4.54, as distr…
- CVE-2015-7262QNAP iArtist Lite before 1.4.54, as distributed with QNAP Si…
- CVE-2015-7263The SPDY/2 codec in Facebook Proxygen before 2015-11-09 allo…
- CVE-2015-7264The SPDY/2 codec in Facebook Proxygen before 2015-11-09 trun…
- CVE-2015-7265Facebook Proxygen before 2015-11-09 mismanages HTTPMessage.r…
- CVE-2015-7266The Interactive Advertising Bureau (IAB) OpenRTB 2.3 protoco…
- CVE-2015-7268Samsung 850 Pro and PM851 solid-state drives and Seagate ST5…
- CVE-2015-7269Seagate ST500LT015 hard disk drives, when operating in eDriv…
- CVE-2015-7270Dell Integrated Remote Access Controller (iDRAC) 6 before 2.…
- CVE-2015-7271Dell Integrated Remote Access Controller (iDRAC) 7/8 before …
- CVE-2015-7272Dell Integrated Remote Access Controller (iDRAC) 6 before 2.…
- CVE-2015-7273Dell Integrated Remote Access Controller (iDRAC) 7/8 before …
Are you affected by CVE-2015-7267?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
