CVE-2021-32032

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
21/05/2021
Last modified:
08/06/2026

Description

In Trusted Firmware-M through 1.3.0, cleaning up the memory allocated for a multi-part cryptographic operation (in the event of a failure) can prevent the abort() operation in the associated cryptographic library from freeing internal resources, causing a memory leak.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:trustedfirmware:trusted_firmware-m:*:*:*:*:*:*:*:* 1.3.0 (including)