Unchecked buffer overrun in enc_untrusted_read
Published Dec 15, 2020
5.5
MEDIUMCVSS 3.1
EPSS 0.14%
Description
An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_untrusted_read whose return size was not validated against the requrested size. The parameter size is unchecked allowing the attacker to read memory locations outside of the intended buffer size including memory addresses within the secure enclave. We recommend upgrading past commit b1d120a2c7d7446d2cc58d517e20a1b184b82200
Affected products
-
Affected
- ≥ unspecified, ≤ 0.6.0
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
| Vendor | Product | Default status | Versions |
|---|---|---|---|
| Google LLC | Asylo | unknown | Affected
|
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
Vendor solution
We recommend upgrading past commit b1d120a2c7d7446d2cc58d517e20a1b184b82200
References (2)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2020-29773 Advisory
- https://github.com/google/asylo/commit/b1d120a2c7d7446d2cc58d517e20a1b184b82200 x_refsource_CONFIRMPatchThird Party Advisory
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2020-29773 | Advisory | |
| https://github.com/google/asylo/commit/b1d120a2c7d7446d2cc58d517e20a1b184b82200 | x_refsource_CONFIRMPatchThird Party Advisory |
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
No data
Red Hat
No data
GitHub
No data