Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2021-27429


Texas Instruments TI-RTOS returns a valid pointer to a small buffer on extremely large values. This can trigger an integer overflow vulnerability in 'HeapTrack_alloc' and result in code execution.


Published

2023-11-20T19:15:08.357

Last Modified

2024-11-21T05:57:58.357

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.4 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-190
  • Type: Primary
    CWE-190

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System ti real-time_operating_system - Yes
Hardware ti cc3200 - No
Hardware ti cc3220r - No
Hardware ti cc3220s - No
Hardware ti cc3220sf - No
Hardware ti cc3230s - No
Hardware ti cc3230sf - No
Hardware ti cc3235s - No
Hardware ti cc3235sf - No
Application ti simplelink_cc13xx_software_development_kit < 4.40.00 Yes
Application ti simplelink_cc26xx_software_development_kit < 4.40.00 Yes
Application ti simplelink_cc32xx_software_development_kit < 4.10.03 Yes
Application ti simplelink_msp432e401y - Yes
Application ti simplelink_msp432e411y - Yes

References