CVE-2019-1010296: Buffer Overflow
Published Jul 15, 2019
·Updated
Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Buffer Overflow. The impact is: Code execution in context of TEE core (kernel). The component is: opteeos. The fixed version is: 3.4.0 and later.
Affected Software
2 affected components
Linaro OP-TEE<=3.3.0
TrustedFirmware OP-TEE<=3.3.0
Remediation
Event History
Jul 15, 2019
CVE Published
via MITRE·05:24 PM
Data Sourced
via MITRE·05:24 PM
DescriptionWeakness
Data Sourced
via NVD·06:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Jan 12, 58398
Event
04:37 PM
Frequently Asked Questions
1
What is CVE-2019-1010296?
CVE-2019-1010296 is a vulnerability in Linaro/OP-TEE 3.3.0 and earlier that allows for buffer overflow, leading to potential code execution in the TEE core.
2
What is the impact of CVE-2019-1010296?
The impact of CVE-2019-1010296 is code execution in the context of the TEE core (kernel).
3
Which component is affected by CVE-2019-1010296?
The component affected by CVE-2019-1010296 is optee_os.
4
How severe is CVE-2019-1010296?
CVE-2019-1010296 has a severity rating of 9.8 (critical).
5
How can I fix CVE-2019-1010296?
To fix CVE-2019-1010296, update to version 3.4.0 or later of Linaro/OP-TEE.