Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2h27-9h97-6xff

Опубликовано: 06 сент. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 4.7

Описание

Insufficient parameter sanitization in TEE SOC Driver could allow an attacker to issue a malformed DRV_SOC_CMD_ID_SRIOV_SPATIAL_PART and cause read or write past the end of allocated arrays, potentially resulting in a loss of platform integrity or denial of service.

Insufficient parameter sanitization in TEE SOC Driver could allow an attacker to issue a malformed DRV_SOC_CMD_ID_SRIOV_SPATIAL_PART and cause read or write past the end of allocated arrays, potentially resulting in a loss of platform integrity or denial of service.

EPSS

Процентиль: 2%
0.00014
Низкий

4.7 Medium

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 4.7
nvd
5 месяцев назад

Insufficient parameter sanitization in TEE SOC Driver could allow an attacker to issue a malformed DRV_SOC_CMD_ID_SRIOV_SPATIAL_PART and cause read or write past the end of allocated arrays, potentially resulting in a loss of platform integrity or denial of service.

CVSS3: 4.7
fstec
6 месяцев назад

Уязвимость драйвера TEE SOC микропрограммного обеспечения процессоров AMD, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 2%
0.00014
Низкий

4.7 Medium

CVSS3

Дефекты

CWE-787