Security Advisory

CVE-2021-22548

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-06-08 13:15:13
Last updated 2024-09-17 01:11:52
Assigner Google
State PUBLISHED

Description

An attacker can change the pointer to untrusted memory to point to trusted memory region which causes copying trusted memory to trusted memory, if the latter is later copied out, it allows for reading of memory regions from the trusted region. It is recommended to update past 0.6.2 or git commit https://github.com/google/asylo/commit/53ed5d8fd8118ced1466e509606dd2f473707a5c