An exploit of an already fixed vulnerability with the recent Oescheinen release would have enabled an attacker to potentially manipulate users into installing malicious firmware on their devices.
Another severe vulnerability we discovered internally is about a memory corruption issue. It applies when the Multi edition of the BitBox has not been set up with a wallet yet and is used with a malicious host device. If exploited, it can enable arbitrary code execution and e.g. potentially also the installation of malicious firmware and with that, loss of funds.
The Bitcoin-only edition of the BitBox is not affected, as its firmware does not contain the affected code.
BitBox engineers found another potentially severe issue regarding the silent payments implementation.
There is no direct theft of funds possible, but an attacker would have been able to lock the funds to an unintended payment address for a potential ransom attack, as cooperation between attacker and recipient would be necessary to recover such coins.
Fixes three vulns.