Mutable Attestation or Measurement Reporting Data in ImageCast X - CVE-2022-1740
Published: June 6, 2022
ImageCast X
Dominion Voting Systems
Description
The vulnerability allows a local user to compromise the target system.
The vulnerability exists due to the ImageCast X’s on-screen application hash display feature, audit log export, and application export functionality rely on self-attestation mechanisms. An authenticated attacker with physical access can disguise malicious applications on a device.