CVE-2021-32032

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
21/05/2021
Last modified:
27/05/2021

Description

In Trusted Firmware-M through 1.3.0, cleaning up the memory allocated for a multi-part cryptographic operation (in the event of a failure) can prevent the abort() operation in the associated cryptographic library from freeing internal resources, causing a memory leak.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:linaro:trusted_firmware-m:*:*:*:*:*:*:*:* 1.3.0 (including)