GHSA-p44m-vhp2-rrrfCriticalCVSS 8.2
Phison PS3111-S11 controller firmware versions through SBFQT1.3 expose privileged vendor unique...
🔗 CVE IDs covered (1)
📋 Description
Phison PS3111-S11 controller firmware versions through SBFQT1.3 expose privileged vendor unique commands over the ATA interface with absent or defeatable authentication mechanisms. Attackers can bypass the weak CRC-16 based unlock handshake or exploit builds with no VUC lock to read and write controller memory and raw flash, persisting implants across power cycles.
🔗 References (6)
- https://nvd.nist.gov/vuln/detail/CVE-2026-84696
- https://github.com/trulycrisp/disksec
- https://github.com/trulycrisp/psychite
- https://trulycrisp.github.io/drivefirmware/phison_s11
- https://www.vulncheck.com/advisories/phison-ps3111-s11-controller-firmware-missing-authentication-on-vendor-unique-commands
- https://github.com/advisories/GHSA-p44m-vhp2-rrrf