Skip to main content
Ledger patches Ethereum app vulnerability
Image for illustrative purposes only. Not a real photo.

Ledger patches Ethereum app vulnerability

Share
  • Ledger patched a vulnerability in its Ethereum app’s clear-signing process two weeks ago.
  • The flaw could potentially let attackers manipulate transaction details shown on Ledger devices.
  • Ledger CTO Charles Guillemet said users with updated firmware and apps are protected.

Ledger has patched a vulnerability in its Ethereum (CRYPTO:ETH) app’s clear-signing process, according to BitcoinWorld.

The flaw could potentially let attackers manipulate transaction data displayed on Ledger hardware wallets.

Ledger Chief Technology Officer Charles Guillemet said users who had kept their Ledger firmware and Ethereum app updated were protected.

Clear-signing displays transaction details in a readable format before users approve transactions.

Ledger’s security team identified the issue and released a fix through a recent Ethereum app update.

Users should update Ledger Live, their device firmware and the Ethereum app through the official Ledger Live interface.

The incident highlights the need to keep hardware wallet software updated and check transaction details before signing.

At the time of reporting, Ethereum price was $2,448.41.

Frequently asked questions