Vulnerabilities > Occlum Project
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-03-10 | CVE-2021-44421 | Information Exposure Through Discrepancy vulnerability in Occlum Project Occlum The pointer-validation logic in util/mem_util.rs in Occlum before 0.26.0 for Intel SGX acts as a confused deputy that allows a local attacker to access unauthorized information via side-channel analysis. | 5.5 |