Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Trusted Firmware-A through 2.8 has an out-of-bounds read in the X.509 parser for parsing boot certificates. This affects downstream use of get_ext and auth_nvctr. Attackers might be able to trigger dangerous read side effects or obtain sensitive information about microarchitectural state.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Linaro Trusted Firmware-A 缓冲区错误漏洞
Vulnerability Description
Linaro Trusted Firmware-A是Linaro开源的一种可信固件。 Linaro Trusted Firmware-A 2.8及之前版本存在安全漏洞,该漏洞源于在解析引导证书的X.509解析器中存在越界读取,攻击者利用该漏洞可能会触发读取或获取有关微架构状态的敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A