Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p326-98p9-wprv

Опубликовано: 10 нояб. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

Insufficient memory cleanup in the AMD Secure Processor (ASP) Trusted Execution Environment (TEE) may allow an authenticated attacker with privileges to generate a valid signed TA and potentially poison the contents of the process memory with attacker controlled data resulting in a loss of confidentiality.

Insufficient memory cleanup in the AMD Secure Processor (ASP) Trusted Execution Environment (TEE) may allow an authenticated attacker with privileges to generate a valid signed TA and potentially poison the contents of the process memory with attacker controlled data resulting in a loss of confidentiality.

EPSS

Процентиль: 39%
0.00174
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-401

Связанные уязвимости

CVSS3: 4.1
redhat
больше 3 лет назад

Insufficient memory cleanup in the AMD Secure Processor (ASP) Trusted Execution Environment (TEE) may allow an authenticated attacker with privileges to generate a valid signed TA and potentially poison the contents of the process memory with attacker controlled data resulting in a loss of confidentiality.

CVSS3: 5.5
nvd
около 3 лет назад

Insufficient memory cleanup in the AMD Secure Processor (ASP) Trusted Execution Environment (TEE) may allow an authenticated attacker with privileges to generate a valid signed TA and potentially poison the contents of the process memory with attacker controlled data resulting in a loss of confidentiality.

EPSS

Процентиль: 39%
0.00174
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-401