NXP Kinetis K82 devices have a buffer over-read via a crafted wlength value in a GET Status-Other request during use of USB In-System Programming (ISP) mode. This discloses protected flash memory.
- https://github.com/Xen1thLabs-AE/CVE-2021-40154
No PoCs found on GitHub currently.