7.8
CVSSv3

CVE-2020-8935

Published: 15/12/2020 Updated: 21/07/2021
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

An arbitrary memory overwrite vulnerability in Asylo versions up to 0.6.0 allow an malicious user to make an Ecall_restore function call to reallocate untrusted code and overwrite sections of the Enclave memory address. We recommend updating your library.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

google asylo