CVE-2025-27839

Source
https://nvd.nist.gov/vuln/detail/CVE-2025-27839
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-27839.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2025-27839
Published
2025-03-08T00:15:38Z
Modified
2025-03-20T08:58:15.176490Z
Summary
[none]
Details

operations/attestation/AttestationTask.kt in the Tangem SDK before 5.18.3 for Android has a logic flow in offline wallet attestation (genuineness check) that causes verification results to be disregarded during the first scan of a card. Exploitation may not have been possible.

References

Affected packages

Git / github.com/tangem/tangem-sdk-android

Affected ranges

Type
GIT
Repo
https://github.com/tangem/tangem-sdk-android
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed

Affected versions

3.*

3.0.0
3.0.1
3.2.0
3.2.1
3.2.2
3.2.3
3.3.0
3.4.0
3.4.1
3.5.0
3.5.1
3.6.0
3.6.2
3.7.0
3.7.1
3.7.2
3.8.0
3.8.1
3.8.2
3.9.0
3.9.1
3.9.2

Other

AND-3748_Fix_neutral_build_action_in_card_sdk-265
AND-4106-deploy-to-gh-registry-279
CSK-129_AZ-framework-for-testing-cards-and-sdk-16
CSK-161_jsonRpc_implementation-27
CSK-161_jsonRpc_implementation-28
CSK-183_hd-wallet_-48
CSK-206_backup-98
CSK-270_enable_derviation_ed25519-113
develop-10
develop-100
develop-101
develop-102
develop-103
develop-104
develop-105
develop-106
develop-107
develop-108
develop-109
develop-11
develop-110
develop-111
develop-112
develop-114
develop-115
develop-116
develop-117
develop-118
develop-119
develop-12
develop-120
develop-121
develop-122
develop-123
develop-124
develop-125
develop-126
develop-127
develop-128
develop-129
develop-13
develop-130
develop-131
develop-132
develop-133
develop-134
develop-135
develop-136
develop-137
develop-138
develop-139
develop-14
develop-140
develop-141
develop-142
develop-143
develop-144
develop-145
develop-146
develop-147
develop-148
develop-149
develop-15
develop-150
develop-151
develop-152
develop-153
develop-154
develop-155
develop-156
develop-157
develop-158
develop-159
develop-160
develop-161
develop-162
develop-163
develop-164
develop-165
develop-166
develop-167
develop-168
develop-169
develop-17
develop-170
develop-171
develop-172
develop-173
develop-174
develop-175
develop-176
develop-177
develop-178
develop-179
develop-18
develop-180
develop-181
develop-182
develop-183
develop-184
develop-185
develop-186
develop-19
develop-190
develop-191
develop-194
develop-195
develop-196
develop-197
develop-198
develop-199
develop-20
develop-200
develop-201
develop-202
develop-203
develop-204
develop-205
develop-206
develop-207
develop-208
develop-209
develop-21
develop-210
develop-211
develop-212
develop-213
develop-214
develop-215
develop-216
develop-217
develop-218
develop-219
develop-22
develop-220
develop-221
develop-222
develop-223
develop-224
develop-225
develop-226
develop-227
develop-228
develop-229
develop-23
develop-231
develop-232
develop-233
develop-234
develop-235
develop-236
develop-237
develop-24
develop-241
develop-242
develop-243
develop-244
develop-245
develop-246
develop-247
develop-248
develop-249
develop-25
develop-250
develop-252
develop-253
develop-255
develop-256
develop-258
develop-26
develop-266
develop-267
develop-269
develop-271
develop-272
develop-273
develop-275
develop-278
develop-280
develop-282
develop-283
develop-284
develop-285
develop-286
develop-287
develop-288
develop-289
develop-29
develop-291
develop-293
develop-296
develop-297
develop-298
develop-299
develop-3
develop-30
develop-300
develop-301
develop-302
develop-31
develop-310
develop-312
develop-314
develop-316
develop-317
develop-318
develop-319
develop-32
develop-320
develop-322
develop-324
develop-326
develop-327
develop-328
develop-33
develop-331
develop-332
develop-334
develop-337
develop-339
develop-344
develop-345
develop-346
develop-347
develop-348
develop-349
develop-350
develop-351
develop-354
develop-355
develop-356
develop-357
develop-358
develop-359
develop-360
develop-362
develop-366
develop-368
develop-370
develop-374
develop-375
develop-377
develop-378
develop-380
develop-381
develop-383
develop-385
develop-387
develop-391
develop-393
develop-394
develop-395
develop-4
develop-41
develop-42
develop-43
develop-45
develop-46
develop-47
develop-49
develop-5
develop-50
develop-51
develop-52
develop-53
develop-54
develop-55
develop-56
develop-57
develop-58
develop-59
develop-6
develop-60
develop-61
develop-62
develop-63
develop-64
develop-65
develop-66
develop-67
develop-68
develop-69
develop-7
develop-70
develop-71
develop-72
develop-73
develop-74
develop-75
develop-76
develop-77
develop-78
develop-79
develop-8
develop-80
develop-86
develop-87
develop-88
develop-89
develop-9
develop-91
develop-92
develop-93
develop-94
develop-95
develop-96
develop-97
develop-99
master-1
master-2
task/AND-3562_bls_validation-257

release-app_4.*

release-app_4.10-281
release-app_4.10-290
release-app_4.10-292
release-app_4.11-294
release-app_4.11-295
release-app_4.6-251
release-app_4.7-268
release-app_4.8-270
release-app_4.9-274
release-app_4.9-276
release-app_4.9-277

release-app_5.*

release-app_5.0-303
release-app_5.0-304
release-app_5.0-306
release-app_5.0-307
release-app_5.0-308
release-app_5.0-309
release-app_5.10-352
release-app_5.12-364
release-app_5.12-367
release-app_5.12-369
release-app_5.13-376
release-app_5.14-379
release-app_5.15-382
release-app_5.15-384
release-app_5.16-386
release-app_5.16-388
release-app_5.16-389
release-app_5.16-390
release-app_5.17-392
release-app_5.18-396
release-app_5.18-398
release-app_5.18-399
release-app_5.18-401
release-app_5.18-402
release-app_5.18-405
release-app_5.18-406
release-app_5.18-407
release-app_5.18-408
release-app_5.2-311
release-app_5.3-313
release-app_5.4-315
release-app_5.5-321
release-app_5.5-323
release-app_5.6-325
release-app_5.7-329
release-app_5.7-330
release-app_5.8-333
release-app_5.8-335
release-app_5.8-336
release-app_5.8-338
release-app_5.8-341
release-app_5.9-340
release-app_5.9-342
release-app_5.9-343

release/3.*

release/3.2.0-81
release/3.2.0-82
release/3.2.0-83
release/3.2.0-84
release/3.2.0-85
release/3.2.3-90

release/4.*

release/4.5-238
release/4.5-239

release_4.*

release_4.5-240