Vulnerability index

Browse CVEs

48 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.1 CVE-2021-36133 The OPTEE-OS CSU driver for NXP i.MX SoC devices lacks security access configuration for several models, resulting in TrustZone bypass because the No… Op Tee Mitigation only Fix from $1,9502021-12-07 CRITICAL 9.1 CVE-2019-25052 In Linaro OP-TEE before 3.7.0, by using inconsistent or malformed data, it is possible to call update and final cryptographic functions directly, cau… Op Tee 3.7.0+ Fix from $2,3002021-08-11 MEDIUM 5.5 CVE-2021-27562 KEV In Arm Trusted Firmware M through 1.2, the NS world may trigger a system halt, an overwrite of secure data, or the printing out of secure data when c… Trusted Firmware M after 1.2.0 Fix from $1,6002021-05-25 HIGH 7.5 CVE-2021-32032 In Trusted Firmware-M through 1.3.0, cleaning up the memory allocated for a multi-part cryptographic operation (in the event of a failure) can preven… Trusted Firmware M after 1.3.0 Fix from $1,9502021-05-21 CRITICAL 9.8 CVE-2019-1010292 Linaro/OP-TEE OP-TEE Prior to version v3.4.0 is affected by: Boundary checks. The impact is: This could lead to corruption of any memory which the TA… Op Tee 3.4.0+ Fix from $2,3002019-07-16 CRITICAL 9.8 CVE-2019-1010293 Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Boundary crossing. The impact is: Memory corruption of the TEE itself. The component is: optee… Op Tee after 3.3.0 Fix from $2,3002019-07-15 CRITICAL 9.8 CVE-2019-1010295 Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Buffer Overflow. The impact is: Memory corruption and disclosure of memory content. The compon… Op Tee after 3.3.0 Fix from $2,3002019-07-15 CRITICAL 9.8 CVE-2019-1010296 Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Buffer Overflow. The impact is: Code execution in context of TEE core (kernel). The component … Op Tee after 3.3.0 Fix from $2,3002019-07-15 CRITICAL 9.8 CVE-2019-1010297 Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Buffer Overflow. The impact is: Execution of code in TEE core (kernel) context. The component … Op Tee after 3.3.0 Fix from $2,3002019-07-15 CRITICAL 9.8 CVE-2019-1010298 Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Buffer Overflow. The impact is: Code execution in the context of TEE core (kernel). The compon… Op Tee after 3.3.0 Fix from $2,3002019-07-15 HIGH 7.5 CVE-2019-1010294 Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Rounding error. The impact is: Potentially leaking code and/or data from previous Trusted Appl… Op Tee after 3.3.0 Fix from $1,9502019-07-15 MEDIUM 5.3 CVE-2018-19440 ARM Trusted Firmware-A allows information disclosure. Trusted Firmware A after 2.0 Fix from $1,6002019-01-30 HIGH 7.5 CVE-2017-15031 In all versions of ARM Trusted Firmware up to and including v1.4, not initializing or saving/restoring the PMCR_EL0 register can leak secure world ti… Trusted Firmware A after 2.1 Fix from $1,9502018-12-18 HIGH 7.0 CVE-2017-9607 The BL1 FWU SMC handling code in ARM Trusted Firmware before 1.4 might allow attackers to write arbitrary data to secure memory, bypass the bl1_plat_… Trusted Firmware A after 1.3 Fix from $1,9502017-09-20 HIGH 8.1 CVE-2017-7563 In ARM Trusted Firmware 1.3, RO memory is always executable at AArch64 Secure EL1, allowing attackers to bypass the MT_EXECUTE_NEVER protection mecha… Trusted Firmware A after 1.3 Fix from $1,9502017-06-07 HIGH 7.5 CVE-2017-7564 In ARM Trusted Firmware through 1.3, the secure self-hosted invasive debug interface allows normal world attackers to cause a denial of service (secu… Trusted Firmware A after 1.3 Fix from $1,9502017-06-07 HIGH 8.1 CVE-2017-2784 An exploitable free of a stack pointer vulnerability exists in the x509 certificate parsing code of ARM mbed TLS before 1.3.19, 2.x before 2.1.7, and… Mbed Tls after 1.3.18 Fix from $1,9502017-04-20 HIGH 7.5 CVE-2016-6129 The rsa_verify_hash_ex function in rsa_verify_hash.c in LibTomCrypt, as used in OP-TEE before 2.2.0, does not validate that the message length is equ… Op Tee 2.2.0+ Fix from $1,9502017-02-13