PT-2021-4213 · Texas Instruments · Ti-Rtos
Published
2021-04-29
·
Updated
2023-12-01
·
CVE-2021-27429
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
TI-RTOS (affected versions not specified)
Description
The issue is related to an integer overflow vulnerability in the
HeapTrack alloc function. This vulnerability can be triggered when extremely large values are passed, causing the function to return a valid pointer to a small buffer. As a result, it may lead to code execution. The vulnerability affects the SimpleLink series CC13XX, CC26XX, CC32XX, and MSP432E4 microcontrollers.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Integer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ti-Rtos