Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2021-44149

An issue was discovered in Trusted Firmware OP-TEE Trusted OS through 3.15.0. The OPTEE-OS CSU driver for NXP i.MX6UL SoC devices lacks security access configuration for wakeup-related registers, resulting in TrustZone bypass because the NonSecure World can perform arbitrary memory read/write operations on Secure World memory. This involves a v cycle.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 25.7%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 4.6
Products affected by CVE-2021-44149


Contact Us

Shodan ® - All rights reserved