Vulnerabilities > Linaro

DATE CVE VULNERABILITY TITLE RISK
2019-07-15 CVE-2019-1010297 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Linaro Op-Tee
Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Buffer Overflow.
network
low complexity
linaro CWE-119
critical
10.0
2019-07-15 CVE-2019-1010296 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Linaro Op-Tee
Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Buffer Overflow.
network
low complexity
linaro CWE-119
critical
10.0
2019-07-15 CVE-2019-1010295 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Linaro Op-Tee
Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Buffer Overflow.
network
low complexity
linaro CWE-119
7.5
2019-07-15 CVE-2019-1010294 Numeric Errors vulnerability in Linaro Op-Tee
Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Rounding error.
network
low complexity
linaro CWE-189
5.0
2019-07-15 CVE-2019-1010293 Out-of-bounds Write vulnerability in Linaro Op-Tee
Linaro/OP-TEE OP-TEE 3.3.0 and earlier is affected by: Boundary crossing.
network
low complexity
linaro CWE-787
7.5
2018-06-19 CVE-2018-12565 Improper Input Validation vulnerability in multiple products
An issue was discovered in Linaro LAVA before 2018.5.post1.
network
low complexity
linaro debian CWE-20
6.5
2018-06-19 CVE-2018-12564 Improper Input Validation vulnerability in multiple products
An issue was discovered in Linaro LAVA before 2018.5.post1.
network
low complexity
linaro debian CWE-20
4.0
2018-06-19 CVE-2018-12563 Improper Input Validation vulnerability in Linaro Lava
An issue was discovered in Linaro LAVA before 2018.5.post1.
network
low complexity
linaro CWE-20
4.0
2018-06-15 CVE-2018-12437 Information Exposure vulnerability in multiple products
LibTomCrypt through 1.18.1 allows a memory-cache side-channel attack on ECDSA signatures, aka the Return Of the Hidden Number Problem or ROHNP.
1.9
2018-01-02 CVE-2017-1000413 Information Exposure vulnerability in Linaro Op-Tee
Linaro's open source TEE solution called OP-TEE, version 2.4.0 (and older) is vulnerable a timing attack in the Montgomery parts of libMPA in OP-TEE resulting in a compromised private RSA key.
network
linaro CWE-200
4.3