An issue exists in UC Berkeley RISE Opaque prior to 2018-12-01. There is no boundary check on ocall_malloc. The return value could be a pointer to enclave memory. It could cause an arbitrary enclave memory write.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ucbrise opaque |