CVE-2019-14358 describes a side-channel vulnerability in Archos Safe-T devices, where the power consumption of the row-based OLED display can reveal partial display contents. An attacker with physical access and control over the device's USB connection could potentially recover confidential information like PINs or BIP39 mnemonics by measuring power consumption while secrets are displayed. Rated Medium (CVSS 4.6), this vulnerability requires physical proximity and specific timing, limiting its practical exploitability. There is no public exploit code, active exploitation, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:h:archos:safe-t:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.2 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.