CVE-2019-1010297: Buffer Overflow
Published Jul 15, 2019
·Updated
Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Buffer Overflow. The impact is: Execution of code in TEE core (kernel) context. The component is: opteeos. The fixed version is: 3.4.0 and later.
Affected Software
2 affected components
Linaro OP-TEE<=3.3.0
TrustedFirmware OP-TEE<=3.3.0
Remediation
Event History
Jul 15, 2019
CVE Published
via MITRE·05:22 PM
Data Sourced
via MITRE·05:22 PM
DescriptionWeakness
Data Sourced
via NVD·06:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2019-1010297?
The severity of CVE-2019-1010297 is critical (9.8).
2
What is the impact of CVE-2019-1010297?
The impact of CVE-2019-1010297 is the execution of code in TEE core (kernel) context.
3
What component is affected by CVE-2019-1010297?
The component affected by CVE-2019-1010297 is optee_os.
4
How do I fix CVE-2019-1010297?
To fix CVE-2019-1010297, update to version 3.4.0 or later of Linaro/OP-TEE.
5
What are the Common Weakness Enumeration (CWE) IDs related to CVE-2019-1010297?
The Common Weakness Enumeration (CWE) IDs related to CVE-2019-1010297 are CWE-119, CWE-190, and CWE-787.