VYPR

OTE protocol

by Nvidia

CVEs (2)

  • CVE-2021-34389MedJun 21, 2021
    risk 0.33cvss 5.0epss 0.00

    Trusty contains a vulnerability in NVIDIA OTE protocol message parsing code, which is present in all the TAs. An incorrect bounds check can allow a local user through a malicious client to access memory from the heap in the TrustZone, which may lead to information disclosure.

  • CVE-2021-34394MedJun 22, 2021
    risk 0.27cvss 4.2epss 0.00

    Trusty contains a vulnerability in the NVIDIA OTE protocol that is present in all TAs. An incorrect message stream deserialization allows an attacker to use the malicious CA that is run by the user to cause the buffer overflow, which may lead to information disclosure and data…