Skip to main content

Vendor/product archive

trustedfirmware / op-tee CVEs

Beta · best-effort

29 CVEs tagged to trustedfirmware / op-tee7 Critical, 9 High, 7 Medium, 6 Low, 0 Unrated.

CVE-2019-1010294

Published Jul 15, 2019

Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Rounding error. The impact is: Potentially leaking code and/or data from previous Trusted Application. The component is: opt…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-1010293

Published Jul 15, 2019

Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Boundary crossing. The impact is: Memory corruption of the TEE itself. The component is: optee_os. The fixed version is: 3.4…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2018-12437

Published Jun 15, 2018

LibTomCrypt through 1.18.1 allows a memory-cache side-channel attack on ECDSA signatures, aka the Return Of the Hidden Number Problem or ROHNP. To discover an ECDSA key, the attac…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-6129

Published Feb 13, 2017

The rsa_verify_hash_ex function in rsa_verify_hash.c in LibTomCrypt, as used in OP-TEE before 2.2.0, does not validate that the message length is equal to the ASN.1 encoded data l…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 26-29 of 29 CVEsPage 2 of 2