PT-2024-11524 · Unknown · Asp Secure Os

Published

2024-08-13

·

Updated

2026-05-15

·

CVE-2022-23817

CVSS v4.0

7.3

High

VectorAV:L/AC:H/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Name of the Vulnerable Software and Affected Versions ASP Secure OS (affected versions not specified)
Description The issue is related to insufficient checking of memory buffer in ASP Secure OS, which may allow an attacker with a malicious Trusted Application (TA) to read or write to the ASP Secure OS kernel virtual address space. This could potentially lead to privilege escalation.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

Buffer Overflow

RCE

Weakness Enumeration

Related Identifiers

CVE-2022-23817

Affected Products

Asp Secure Os