An unvalidated input in a library function responsible for communicating between secure and non-secure memory in Silicon Labs TrustZone implementation allows reading/writing of memory in the secure region of memory from the non-secure region of memory.
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://github.com/SiliconLabs/gecko_sdk/releases | release notes |
https://community.silabs.com/069Vm0000004b95IAA | permissions required |