Vulnerabilities > Google > Asylo > High

DATE CVE VULNERABILITY TITLE RISK
2021-06-08 CVE-2021-22548 Unspecified vulnerability in Google Asylo
An attacker can change the pointer to untrusted memory to point to trusted memory region which causes copying trusted memory to trusted memory, if the latter is later copied out, it allows for reading of memory regions from the trusted region.
local
low complexity
google
7.8
2021-06-08 CVE-2021-22549 Exposure of Resource to Wrong Sphere vulnerability in Google Asylo
An attacker can modify the address to point to trusted memory to overwrite arbitrary trusted memory.
local
low complexity
google CWE-668
7.8
2021-06-08 CVE-2021-22550 Exposure of Resource to Wrong Sphere vulnerability in Google Asylo
An attacker can modify the pointers in enclave memory to overwrite arbitrary memory addresses within the secure enclave.
local
low complexity
google CWE-668
7.8
2020-12-15 CVE-2020-8935 Out-of-bounds Write vulnerability in Google Asylo
An arbitrary memory overwrite vulnerability in Asylo versions up to 0.6.0 allow an attacker to make an Ecall_restore function call to reallocate untrusted code and overwrite sections of the Enclave memory address.
local
low complexity
google CWE-787
7.8