Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-47549


An unprotected memory-access operation in optee_os in TrustedFirmware Open Portable Trusted Execution Environment (OP-TEE) before 3.20 allows a physically proximate adversary to bypass signature verification and install malicious trusted applications via electromagnetic fault injections.


Published

2022-12-19T09:15:09.637

Last Modified

2025-04-17T14:15:24.600

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.4 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-347
  • Type: Secondary
    CWE-347

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System linaro op-tee < 3.20 Yes

References