Show filters
18 Total Results
Displaying 11-18 of 18
Sort by:
Attacker Value
Unknown
CVE-2019-1010295
Disclosure Date: July 15, 2019 (last updated November 27, 2024)
Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Buffer Overflow. The impact is: Memory corruption and disclosure of memory content. The component is: optee_os. The fixed version is: 3.4.0 and later.
0
Attacker Value
Unknown
CVE-2019-1010293
Disclosure Date: July 15, 2019 (last updated November 27, 2024)
Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Boundary crossing. The impact is: Memory corruption of the TEE itself. The component is: optee_os. The fixed version is: 3.4.0 and later.
0
Attacker Value
Unknown
CVE-2019-1010298
Disclosure Date: July 15, 2019 (last updated November 27, 2024)
Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Buffer Overflow. The impact is: Code execution in the context of TEE core (kernel). The component is: optee_os. The fixed version is: 3.4.0 and later.
0
Attacker Value
Unknown
CVE-2019-1010294
Disclosure Date: July 15, 2019 (last updated November 27, 2024)
Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Rounding error. The impact is: Potentially leaking code and/or data from previous Trusted Application. The component is: optee_os. The fixed version is: 3.4.0 and later.
0
Attacker Value
Unknown
CVE-2018-12437
Disclosure Date: June 15, 2018 (last updated November 26, 2024)
LibTomCrypt through 1.18.1 allows a memory-cache side-channel attack on ECDSA signatures, aka the Return Of the Hidden Number Problem or ROHNP. To discover an ECDSA key, the attacker needs access to either the local machine or a different virtual machine on the same physical host.
0
Attacker Value
Unknown
CVE-2017-1000412
Disclosure Date: January 02, 2018 (last updated November 26, 2024)
Linaro's open source TEE solution called OP-TEE, version 2.4.0 (and older) is vulnerable to the bellcore attack in the LibTomCrypt code resulting in compromised private RSA key.
0
Attacker Value
Unknown
CVE-2017-1000413
Disclosure Date: January 02, 2018 (last updated November 26, 2024)
Linaro's open source TEE solution called OP-TEE, version 2.4.0 (and older) is vulnerable a timing attack in the Montgomery parts of libMPA in OP-TEE resulting in a compromised private RSA key.
0
Attacker Value
Unknown
CVE-2016-6129
Disclosure Date: February 13, 2017 (last updated November 26, 2024)
The rsa_verify_hash_ex function in rsa_verify_hash.c in LibTomCrypt, as used in OP-TEE before 2.2.0, does not validate that the message length is equal to the ASN.1 encoded data length, which makes it easier for remote attackers to forge RSA signatures or public certificates by leveraging a Bleichenbacher signature forgery attack.
0