CVE-2019-1010293: Critical severity Linaro OP-TEE vulnerability
Published Jul 15, 2019
·Updated
Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Boundary crossing. The impact is: Memory corruption of the TEE itself. The component is: opteeos. The fixed version is: 3.4.0 and later.
Affected Software
2 affected components
Linaro OP-TEE<=3.3.0
TrustedFirmware OP-TEE<=3.3.0
Remediation
Event History
Jul 15, 2019
CVE Published
via MITRE·05:29 PM
Data Sourced
via MITRE·05:29 PM
DescriptionWeakness
Data Sourced
via NVD·06:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2019-1010293.
2
What is the title of this vulnerability?
The title of this vulnerability is "Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Boundary crossing."
3
What is the impact of this vulnerability?
The impact of this vulnerability is memory corruption of the TEE itself.
4
Which component is affected by this vulnerability?
The component affected by this vulnerability is optee_os.
5
How do I fix this vulnerability?
To fix this vulnerability, update to version 3.4.0 or later of Linaro/OP-TEE OP-TEE.