Vulnerabilities > CVE-2021-36218 - Out-of-bounds Write vulnerability in Skale Sgxwallet 1.58.3

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
skale
CWE-787

Summary

An issue was discovered in SKALE sgxwallet 1.58.3. sgx_disp_ippsAES_GCMEncrypt allows an out-of-bounds write, resulting in a segfault and compromised enclave. This issue describes a buffer overflow, which was resolved prior to v1.77.0 and not reproducible in latest sgxwallet v1.77.0

Vulnerable Configurations

Part Description Count
Application
Skale
1

Common Weakness Enumeration (CWE)