Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wfj9-288h-5mpm

Опубликовано: 11 янв. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 4.7

Описание

A TOCTOU (time-of-check to time-of-use) vulnerability exists where an attacker may use a compromised BIOS to cause the TEE OS to read memory out of bounds that could potentially result in a denial of service.

A TOCTOU (time-of-check to time-of-use) vulnerability exists where an attacker may use a compromised BIOS to cause the TEE OS to read memory out of bounds that could potentially result in a denial of service.

EPSS

Процентиль: 12%
0.00042
Низкий

4.7 Medium

CVSS3

Дефекты

CWE-367

Связанные уязвимости

CVSS3: 1.9
redhat
около 3 лет назад

A TOCTOU (time-of-check to time-of-use) vulnerability exists where an attacker may use a compromised BIOS to cause the TEE OS to read memory out of bounds that could potentially result in a denial of service.

CVSS3: 4.7
nvd
около 3 лет назад

A TOCTOU (time-of-check to time-of-use) vulnerability exists where an attacker may use a compromised BIOS to cause the TEE OS to read memory out of bounds that could potentially result in a denial of service.

EPSS

Процентиль: 12%
0.00042
Низкий

4.7 Medium

CVSS3

Дефекты

CWE-367