{"_id": "99e8c5452de28e19", "_type": "sec_certs.sample.eucc.EUCCCertificate", "dgst": "99e8c5452de28e19", "cert_id": "EUCC-3090-2025-0000000001-00001", "category": "SMARTCARDS AND SIMILAR DEVICES", "name": "ST54J / ST54K", "status": "active", "manufacturer": "STMICROELECTRONICS", "scheme": "FR", "security_level": {"_type": "Set", "elements": ["EAL5"]}, "not_valid_before": "2025-04-02", "not_valid_after": "2030-04-02", "report_link": "https://certification.enisa.europa.eu/document/download/e0c979aa-051b-438f-86eb-746528808a75_en?filename=EUCC-ANSSI-2025_03_01fr.pdf", "st_link": "https://certification.enisa.europa.eu/document/download/0ccef0fc-c34f-4cd4-817f-113437d7f6bc_en?filename=Cible-EUCC-ANSSI-2025_01en.pdf", "cert_link": "https://certification.enisa.europa.eu/document/download/3c85f0d4-da88-4e7f-a86d-9c5e7e8f32ae_en?filename=Certificat_EUCC_2025_03_01fr_1.pdf", "manufacturer_web": null, "protection_profile_links": null, "state": {"_type": "sec_certs.sample.cc_eucc_common.InternalState", "report": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": "3361f2776ab42658770f4aef13e3555ab5fc2b983fdb07ecc6ede0c067a2c492", "txt_hash": "279002fa2853f16229ed8d097c278133755713b1caa02318eb8a003c0d953d29", "json_hash": null}, "st": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": "6df1aff5b7ea67cf22e796661037f13c0baff6dad3756f3b48dac73a71d2148d", "txt_hash": "26bf1ec4a2dee92e548da139281500d50fd8c50acc32014eef0684eac5a7abda", "json_hash": null}, "cert": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": "d2a5c93ee54412c7253803fe6db806437c2f7cfc1763e633138ef6371f4dd7f1", "txt_hash": "c2bfca669a48c343c7771e7c1b6ec587eaa4295ef53aa7fd1f7ad415a9f973dc", "json_hash": null}}, "pdf_data": {"_type": "sec_certs.sample.cc_eucc_common.PdfData", "report_metadata": {"pdf_file_size_bytes": 372376, "pdf_is_encrypted": false, "pdf_number_of_pages": 17, "/CreationDate": "D:20250401102541+02'00'", "/Creator": "Acrobat PDFMaker 23 pour Word", "/Keywords": "", "/ModDate": "D:20250401102632+02'00'", "/Producer": "Adobe PDF Library 23.1.175", "pdf_hyperlinks": {"_type": "Set", "elements": ["http://www.cyber.gouv.fr/", "http://www.commoncriteriaportal.org/", "https://www.st.com/content/st_com/en/about/security-and-privacy/psirt.html", "https://www.st.com/en/secure-mcus/st54j.html", "mailto:psirt@st.com", "https://www.st.com/en/secure-mcus/st54k.html", "https://cyber.gouv.fr/cybersecurity-act", "mailto:certification@ssi.gouv.fr"]}}, "st_metadata": {"pdf_file_size_bytes": 1623496, "pdf_is_encrypted": false, "pdf_number_of_pages": 80, "/CreationDate": "D:20250401102813+02'00'", "/Creator": "FrameMaker 17.0.1", "/Keywords": "", "/ModDate": "D:20250401102813+02'00'", "/Producer": "Adobe PDF Library 17.0", "pdf_hyperlinks": {"_type": "Set", "elements": ["http://www.st.com"]}}, "cert_metadata": {"pdf_file_size_bytes": 236678, "pdf_is_encrypted": false, "pdf_number_of_pages": 2, "/CreationDate": "D:20250401102302+02'00'", "/Creator": "Acrobat PDFMaker 23 pour Word", "/Keywords": "", "/ModDate": "D:20250401102352+02'00'", "/Producer": "Adobe PDF Library 23.1.175", "pdf_hyperlinks": {"_type": "Set", "elements": ["https://www.st.com/content/st_com/en/about/security-and-privacy/psirt.html", "https://www.st.com/en/secure-mcus/st54j.html", "mailto:psirt@st.com", "https://www.st.com/en/secure-mcus/st54k.html", "https://cyber.gouv.fr/cybersecurity-act", "https://cyber.gouv.fr/voir-les-centres-devaluation"]}}, "report_frontpage": {"FR": {"match_rules": ["R\u00e9f\u00e9rence du rapport de certification(.+)Nom du produit(.+)R\u00e9f\u00e9rence/version du produit(.+)Conformit\u00e9 \u00e0 un profil de protection(.+)Crit\u00e8res d\u2019\u00e9valuation et version(.+)Niveau d\u2019\u00e9valuation(.+)D\u00e9veloppeur (.+)Centre d\u2019\u00e9valuation(.+)Accords de reconnaissance applicables"], "cert_id": "EUCC-ANSSI-2025-03-01", "cert_item": "ST54J / ST54K", "cert_item_version": "A07 Type de produit Cartes \u00e0 puce et dispositifs similaires", "ref_protection_profiles": "Security IC Platform Protection Profile with Augmentation Packages, version 1.0 certifi\u00e9 BSI-CC-PP-0084-2014 le 19 f\u00e9vrier 2014 avec conformit\u00e9 aux packages : \u201cAuthentication of the security IC\u201d \u201cLoader dedicated for usage in Secured Environment only\u201d \u201cLoader dedicated for usage by authorized users only", "cc_version": "ISO/IEC 15408-1:2009, 15408-2:2008 15408-3:2008 (Crit\u00e8res Communs version 3.1 r\u00e9vision 5) ISO/IEC 18045:2008 (CEM version 3.1 r\u00e9vision 5", "cc_security_level": "Elev\u00e9 / EAL5 augment\u00e9 ALC_DVS.2, ALC_FLR.2, AVA_VAN.5 R\u00e9f\u00e9rence du rapport d\u2019\u00e9valuation Evaluation Technical Report PEACOCK A07 Project r\u00e9f\u00e9rence PEACOCK_A07_2024_ETR_v1.1 version 1.1 11 f\u00e9vrier 2025. Fonctionnalit\u00e9 de s\u00e9curit\u00e9 du produit voir 2.2.2 Services de s\u00e9curit\u00e9 R\u00e9sum\u00e9 des menaces Inherent Information Leakage Physical Probing Malfunction due to Environmental Stress Physical Manipulation Forced Information Leakage R a p p o r t d e c e r t i f i c a t i o n E U C C - A N S S I - 2 0 2 5 - 0 3 - 0 1 S T 5 4 J / S T 5 4 K ( A 0 7 ) A N S S I - C C - C E R - F - 0 7 _ v 3 1 . 9 P a g e 6 s u r 1 7 Abuse of Functionality Deficiency of Random Numbers Masquerade the TOE Memory Access Violation Diffusion of open samples (voir chapitre 3 [ST]) Exigences de configuration du produit voir 4.2 Restrictions d\u2019usage Hypoth\u00e8ses li\u00e9es \u00e0 l\u2019environnement d\u2019exploitation voir 4.2 Restrictions d\u2019usage", "developer": "STMICROELECTRONICS 190 Avenue Celestin Coq, 13106 Rousset, France Commanditaire STMICROELECTRONICS 190 Avenue Celestin Coq, 13106 Rousset, France", "cert_lab": "SERMA SAFETY & SECURITY 14 rue Galil\u00e9e, CS 10071, 33608 Pessac Cedex, France Marque EUCC"}}, "st_frontpage": null, "cert_frontpage": null, "report_keywords": {"cc_cert_id": {"FR": {"EUCC-ANSSI-2025-03-01": 3}}, "cc_protection_profile_id": {"BSI": {"BSI-CC-PP-0084-2014": 1, "BSI-PP-0084-2014": 1}}, "cc_security_level": {"EAL": {"EAL5": 1, "EAL2": 2}}, "cc_sar": {"ALC": {"ALC_DVS.2": 1, "ALC_FLR.2": 2, "ALC_FLR": 1}, "AVA": {"AVA_VAN.5": 1, "AVA_VAN": 1}}, "cc_sfr": {}, "cc_claims": {}, "vendor": {"STMicroelectronics": {"STMicroelectronics": 3}}, "eval_facility": {"Serma": {"SERMA": 1}, "CESTI": {"CESTI": 1}}, "symmetric_crypto": {"AES_competition": {"AES": {"AES": 1}}, "DES": {"DES": {"DES": 2}}}, "asymmetric_crypto": {}, "pq_crypto": {}, "hash_function": {}, "crypto_scheme": {}, "crypto_protocol": {}, "randomness": {}, "cipher_mode": {}, "ecc_curve": {}, "crypto_engine": {"NesCrypt": {"Nescrypt": 1}}, "tls_cipher_suite": {}, "crypto_library": {}, "vulnerability": {}, "side_channel_analysis": {"SCA": {"Physical Probing": 1}, "FI": {"Malfunction": 1}}, "technical_report_id": {}, "device_model": {}, "tee_name": {"IBM": {"SE": 3}}, "os_name": {}, "cplc_data": {"ICVersion": {"IC Version": 1}}, "ic_data_group": {}, "standard_id": {"BSI": {"AIS31": 1}, "ISO": {"ISO/IEC 18045:2008": 2}, "CC": {"CCMB-2017-04-001": 1, "CCMB-2017-04-003": 1, "CCMB-2017-04-004": 1}}, "javacard_version": {}, "javacard_api_const": {}, "javacard_packages": {}, "certification_process": {}}, "st_keywords": {"cc_cert_id": {}, "cc_protection_profile_id": {"BSI": {"BSI-CC-PP-0084-2014": 64, "BSI-CC-PP- 0084-2014": 10, "BSI-CC-PP-0084-": 2}}, "cc_security_level": {"EAL": {"EAL5": 17, "EAL 5": 1, "EAL5+": 1, "EAL4": 1, "EAL5 augmented": 1, "EAL 5 augmented": 1}}, "cc_sar": {"ADV": {"ADV_FSP": 4, "ADV_ARC.1": 2, "ADV_FSP.5": 3, "ADV_IMP.1": 1, "ADV_INT.2": 1, "ADV_TDS.4": 1, "ADV_ARC": 2, "ADV_IMP": 1}, "AGD": {"AGD_PRE": 3, "AGD_OPE.1": 1, "AGD_PRE.1": 1, "AGD_OPE": 1}, "ALC": {"ALC_DEL": 3, "ALC_DVS.2": 4, "ALC_FLR.2": 6, "ALC_CMC.4": 1, "ALC_CMS.5": 1, "ALC_DEL.1": 1, "ALC_LCD.1": 1, "ALC_TAT.2": 1, "ALC_DVS": 1, "ALC_CMS": 1, "ALC_CMC": 1}, "ATE": {"ATE_COV": 3, "ATE_COV.2": 1, "ATE_DPT.3": 1, "ATE_FUN.1": 1, "ATE_IND.2": 1}, "AVA": {"AVA_VAN.5": 4, "AVA_VAN": 1}, "ASE": {"ASE_INT": 2, "ASE_CCL": 4, "ASE_ECD": 4, "ASE_SPD": 8, "ASE_OBJ": 11, "ASE_REQ": 30, "ASE_TSS": 7, "ASE_CCL.1": 1, "ASE_ECD.1": 1, "ASE_INT.1": 1, "ASE_OBJ.2": 1, "ASE_REQ.2": 1, "ASE_SPD.1": 1, "ASE_TSS.1": 1}}, "cc_sfr": {"FAU": {"FAU_SAR.1": 25, "FAU_SAS.1": 28, "FAU_SAS": 2, "FAU_GEN.1": 8}, "FCS": {"FCS_RNG.1": 6, "FCS_COP.1": 17, "FCS_RNG": 2, "FCS_CKM.4": 4, "FCS_CKM.1": 2}, "FDP": {"FDP_SDC.1": 8, "FDP_SDI.2": 14, "FDP_ITT.1": 10, "FDP_IFC.1": 17, "FDP_ACC.2": 12, "FDP_ACF.1": 28, "FDP_UCT.1": 16, "FDP_UIT.1": 16, "FDP_ACC.1": 23, "FDP_SDC": 2, "FDP_ACF": 1, "FDP_ITC.1": 2, "FDP_ITC.2": 2, "FDP_SMF.1": 2, "FDP_SMR.1": 1}, "FIA": {"FIA_API.1": 6, "FIA_UID.1": 16, "FIA_UAU.1": 14, "FIA_API": 2}, "FMT": {"FMT_LIM.1": 29, "FMT_LIM.2": 30, "FMT_MSA.3": 26, "FMT_MSA.1": 26, "FMT_SMF.1": 21, "FMT_SMR.1": 17, "FMT_LIM": 2}, "FPT": {"FPT_FLS.1": 22, "FPT_PHP.3": 11, "FPT_ITT.1": 9}, "FRU": {"FRU_FLT.2": 11}, "FTP": {"FTP_ITC.1": 27, "FTP_TRP.1": 2}}, "cc_claims": {"O": {"O.RND": 4, "O.TOE-": 1, "O.C": 4}, "T": {"T.RND": 3}, "R": {"R.O": 4}}, "vendor": {"Infineon": {"Infineon Technologies": 1}, "Samsung": {"Samsung": 3}, "STMicroelectronics": {"STMicroelectronics": 24}, "Philips": {"Philips": 1}}, "eval_facility": {}, "symmetric_crypto": {"AES_competition": {"AES": {"AES": 17, "AES-128": 1, "AES-192": 1, "AES-256": 1}}, "DES": {"DES": {"DES": 18}, "3DES": {"TDES": 7, "TDEA": 1}}}, "asymmetric_crypto": {}, "pq_crypto": {}, "hash_function": {}, "crypto_scheme": {}, "crypto_protocol": {}, "randomness": {"TRNG": {"TRNG": 2}, "RNG": {"RND": 7, "RNG": 6}}, "cipher_mode": {"ECB": {"ECB": 7}, "CBC": {"CBC": 8}}, "ecc_curve": {}, "crypto_engine": {"NesCrypt": {"Nescrypt": 7, "NESCRYPT": 1}}, "tls_cipher_suite": {}, "crypto_library": {}, "vulnerability": {}, "side_channel_analysis": {"SCA": {"Leak-Inherent": 14, "Physical Probing": 4, "physical probing": 3, "side channel": 2}, "FI": {"physical tampering": 1, "Malfunction": 13, "malfunction": 2}, "other": {"JIL": 53}}, "technical_report_id": {}, "device_model": {}, "tee_name": {"IBM": {"SE": 4}, "other": {"T6": 1}}, "os_name": {}, "cplc_data": {}, "ic_data_group": {}, "standard_id": {"FIPS": {"FIPS PUB 197": 3}, "NIST": {"NIST SP 800-67": 3, "SP 800-38A": 2, "NIST SP 800-38A": 2, "SP 800-67": 1}, "PKCS": {"PKCS #1": 2}, "BSI": {"AIS31": 2}, "ISO": {"ISO/IEC 7816-3": 1, "ISO/IEC 9796-2": 1, "ISO/IEC 14888": 2, "ISO/IEC 9796": 1}, "CC": {"CCMB-2017-04-002": 23, "CCMB-2017-04-003": 2, "CCMB-2017-04-001": 2}}, "javacard_version": {}, "javacard_api_const": {}, "javacard_packages": {}, "certification_process": {"OutOfScope": {"out of scope": 2, " The ST54J_SE is in the scope of this evaluation, while the ST54J_CLF and the ST54J_IOs are out of scope of this evaluation": 1, "ES) is in User NVM. 45 Note: The ES is not part of the TOE and is out of scope of the evaluation": 1, " The ST54J_SE is in the scope of this evaluation, while the ST54J_CLF and the ST54J_IOs are out of scope of this evaluation. 19 In the following, the TOE is denoted by \u201cST54J/K A07\u201d or \u201cTOE\u201d. 20 Figure 1": 1, "Security IC Embedded Software (ES) is in User NVM. 45 Note: The ES is not part of the TOE and is out of scope of the evaluation. 1.6.3 TOE documentation 46 The user guidance documentation, part of the TOE": 1}}}, "cert_keywords": {"cc_cert_id": {"FR": {"EUCC-ANSSI-2025-03-01": 2}}, "cc_protection_profile_id": {"BSI": {"BSI-CC-PP-0084-2014": 1}}, "cc_security_level": {"EAL": {"EAL5": 1, "EAL2": 1}}, "cc_sar": {"ALC": {"ALC_DVS.2": 1, "ALC_FLR.2": 2}, "AVA": {"AVA_VAN.5": 1}}, "cc_sfr": {}, "cc_claims": {}, "vendor": {"STMicroelectronics": {"STMicroelectronics": 3}}, "eval_facility": {"Serma": {"SERMA": 2}}, "symmetric_crypto": {}, "asymmetric_crypto": {}, "pq_crypto": {}, "hash_function": {}, "crypto_scheme": {}, "crypto_protocol": {}, "randomness": {}, "cipher_mode": {}, "ecc_curve": {}, "crypto_engine": {}, "tls_cipher_suite": {}, "crypto_library": {}, "vulnerability": {}, "side_channel_analysis": {}, "technical_report_id": {}, "device_model": {}, "tee_name": {}, "os_name": {}, "cplc_data": {}, "ic_data_group": {}, "standard_id": {}, "javacard_version": {}, "javacard_api_const": {}, "javacard_packages": {}, "certification_process": {}}, "report_filename": "e0c979aa-051b-438f-86eb-746528808a75_en", "st_filename": "0ccef0fc-c34f-4cd4-817f-113437d7f6bc_en", "cert_filename": "3c85f0d4-da88-4e7f-a86d-9c5e7e8f32ae_en"}, "heuristics": {"_type": "sec_certs.sample.cc_eucc_common.Heuristics", "extracted_versions": {"_type": "Set", "elements": ["-"]}, "cpe_matches": null, "verified_cpe_matches": null, "related_cves": null, "cert_lab": ["SERMA"], "cert_id": "EUCC-3090-2025-1", "prev_certificates": null, "next_certificates": null, "st_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "report_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "annotated_references": null, "extracted_sars": {"_type": "Set", "elements": [{"_type": "sec_certs.sample.sar.SAR", "family": "ASE_REQ", "level": 2}, {"_type": "sec_certs.sample.sar.SAR", "family": "ALC_CMS", "level": 5}, {"_type": "sec_certs.sample.sar.SAR", "family": "ADV_IMP", "level": 1}, {"_type": "sec_certs.sample.sar.SAR", "family": "ADV_TDS", "level": 4}, {"_type": "sec_certs.sample.sar.SAR", "family": "ADV_INT", "level": 2}, {"_type": "sec_certs.sample.sar.SAR", "family": "AGD_OPE", "level": 1}, {"_type": "sec_certs.sample.sar.SAR", "family": "AGD_PRE", "level": 1}, {"_type": "sec_certs.sample.sar.SAR", "family": "ASE_OBJ", "level": 2}, {"_type": "sec_certs.sample.sar.SAR", "family": "ALC_DEL", "level": 1}, {"_type": "sec_certs.sample.sar.SAR", "family": "ATE_FUN", "level": 1}, {"_type": "sec_certs.sample.sar.SAR", "family": "ATE_COV", "level": 2}, {"_type": "sec_certs.sample.sar.SAR", "family": "ADV_FSP", "level": 5}, {"_type": "sec_certs.sample.sar.SAR", "family": "ASE_SPD", "level": 1}, {"_type": "sec_certs.sample.sar.SAR", "family": "ADV_ARC", "level": 1}, {"_type": "sec_certs.sample.sar.SAR", "family": "ALC_DVS", "level": 2}, {"_type": "sec_certs.sample.sar.SAR", "family": "ALC_TAT", "level": 2}, {"_type": "sec_certs.sample.sar.SAR", "family": "ATE_DPT", "level": 3}, {"_type": "sec_certs.sample.sar.SAR", "family": "ALC_FLR", "level": 2}, {"_type": "sec_certs.sample.sar.SAR", "family": "ASE_INT", "level": 1}, {"_type": "sec_certs.sample.sar.SAR", "family": "ASE_TSS", "level": 1}, {"_type": "sec_certs.sample.sar.SAR", "family": "ASE_ECD", "level": 1}, {"_type": "sec_certs.sample.sar.SAR", "family": "ALC_LCD", "level": 1}, {"_type": "sec_certs.sample.sar.SAR", "family": "AVA_VAN", "level": 5}, {"_type": "sec_certs.sample.sar.SAR", "family": "ALC_CMC", "level": 4}, {"_type": "sec_certs.sample.sar.SAR", "family": "ASE_CCL", "level": 1}, {"_type": "sec_certs.sample.sar.SAR", "family": "ATE_IND", "level": 2}]}, "direct_transitive_cves": null, "indirect_transitive_cves": null, "scheme_data": null, "protection_profiles": null, "eal": "EAL5"}, "other_metadata": {"_type": "sec_certs.sample.eucc.EUCCCertificate.EnisaMetadata", "certificate_id": "EUCC-3090-2025-0000000001-00001", "product_name": "ST54J / ST54K", "product_type": "Smartcards and similar devices", "product_version": "A07", "product_description": "The evaluated product is \u201cST54J / ST54K, A07\u201d developed by STMICROELECTRONICS. The microcontroller alone is not a usable product in itself. It is intended to host one or more applications. It can be inserted into a plastic holder to create a smart card. The possible uses of this card are multiple (secure identity documents, banking applications, pay TV, transportation, healthcare, etc.) depending on the application software that will be embedded. These software are not part of this evaluation.", "holder_name": "STMICROELECTRONICS", "holder_address": "190 Avenue Celestin Coq, 13106 Rousset", "holder_contact": "Psirt@st.com", "holder_website": "ST54J : ST54J - NFC controller and Secure Element single die - STMicroelectroni\u2026 ST54K : ST54K - NFC controller and Secure Element single die and a UWB secure, \u2026", "certification_body": "ANSSI", "nando_id": "3090", "certification_body_address": "Tour Mercure 31 Quai de Grenelle, 75015 Paris", "certification_body_contact": "certification@ssi.gouv.fr Phone: +33 (0)1 71 75 82 82", "itsef": "Serma Safety and Security SAS", "responsible_ncca": "Agence nationale de la s\u00e9curit\u00e9 des syst\u00e8mes d\u2019information", "scheme": "(UE) 2024/482 - EUCC", "report_reference": "certificate associated with the report EUCC-ANSSI-2025-03-01 also published on the certification website.", "assurance_level": "High", "cc_version": "ISO/IEC 15408-1:2009 ISO/IEC 15408-2:2008 ISO/IEC 15408-3:2008", "cem_version": "CEM 3.1 Revision 5", "ava_van_level": "5", "package": {"EAL5": ["ALC_DVS.2", "ALC_FLR.2", "AVA_VAN.5"]}, "protection_profile": "Security IC Platform Protection Profile with Augmentation Packages version 1.0, BSI-CC-PP-0084-2014", "issuance_year": "2025", "issuance_month": "4", "issuance_date_full": "02/04/2025", "certificate_yearly_number": "EUCC-ANSSI-2025-03-01", "modification_or_reassurance": null, "validity_period_years": "5 years"}}