Known Vulnerabilities for Asylo by Google
Listed below are 10 of the newest known vulnerabilities associated with "Asylo" by "Google".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-22552 json | An untrusted memory read vulnerability in Asylo versions up to 0.6.1 allows an untrusted attacker to pass a syscall number in... | 5.5 - MEDIUM | 2021-08-02 | 2021-08-10 |
| CVE-2021-22550 json | An attacker can modify the pointers in enclave memory to overwrite arbitrary memory addresses within the secure enclave. It i... | 7.8 - HIGH | 2021-06-08 | 2021-06-22 |
| CVE-2021-22549 json | An attacker can modify the address to point to trusted memory to overwrite arbitrary trusted memory. It is recommended to upd... | 7.8 - HIGH | 2021-06-08 | 2022-10-25 |
| CVE-2021-22548 json | An attacker can change the pointer to untrusted memory to point to trusted memory region which causes copying trusted memory ... | 7.8 - HIGH | 2021-06-08 | 2021-06-17 |
| CVE-2020-8944 json | An arbitrary memory write vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to ecall_re... | 5.5 - MEDIUM | 2020-12-15 | 2020-12-17 |
| CVE-2020-8943 json | An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_untru... | 5.5 - MEDIUM | 2020-12-15 | 2020-12-17 |
| CVE-2020-8942 json | An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_untru... | 5.5 - MEDIUM | 2020-12-15 | 2020-12-17 |
| CVE-2020-8941 json | An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_untru... | 5.5 - MEDIUM | 2020-12-15 | 2020-12-17 |
| CVE-2020-8940 json | An arbitrary memory read vulnerability in Asylo versions up to 0.6.0 allows an untrusted attacker to make a call to enc_untru... | 5.5 - MEDIUM | 2020-12-15 | 2020-12-17 |
| CVE-2020-8939 json | An out of bounds read on the enc_untrusted_inet_ntop function allows an attack to extend the result size that is used by memc... | 5.5 - MEDIUM | 2020-12-15 | 2020-12-17 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Asylo | 0.6.0 | ||||
| Application | Asylo | 0.5.3 | ||||
| Application | Asylo | 0.5.2 | ||||
| Application | Asylo | 0.5.1 | ||||
| Application | Asylo | 0.5.0 | ||||
| Application | Asylo | 0.4.1 | ||||
| Application | Asylo | 0.4.0 | ||||
| Application | Asylo | 0.3.4.2 | ||||
| Application | Asylo | 0.3.4.1 | ||||
| Application | Asylo | 0.3.4 | ||||
| Application | Asylo | 0.3.3 | ||||
| Application | Asylo | 0.3.2 | ||||
| Application | Asylo | 0.3.1 | ||||
| Application | Asylo | 0.3.0 | ||||
| Application | Asylo | 0.2.2 | ||||
| Application | Asylo | 0.2.1 | ||||
| Application | Asylo | 0.2.0 | ||||
| Application | Asylo | - |