PT-2021-4213 · Texas Instruments · Ti-Rtos

Published

2021-04-29

·

Updated

2023-12-01

·

CVE-2021-27429

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions TI-RTOS (affected versions not specified)
Description The issue is related to an integer overflow vulnerability in the HeapTrack alloc function. This vulnerability can be triggered when extremely large values are passed, causing the function to return a valid pointer to a small buffer. As a result, it may lead to code execution. The vulnerability affects the SimpleLink series CC13XX, CC26XX, CC32XX, and MSP432E4 microcontrollers.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Integer Overflow

Weakness Enumeration

Related Identifiers

BDU:2021-04816
CVE-2021-27429

Affected Products

Ti-Rtos