CVE-2021-27504
21.11.2023, 18:15
Texas Instruments devices running FREERTOS, malloc returns a valid pointer to a small buffer on extremely large values, which can trigger an integer overflow vulnerability in 'malloc' for FreeRTOS, resulting in code execution.Enginsight
Vendor | Product | Version |
---|---|---|
amazon | freertos | 10.4.1 |
ti | simplelink_cc13xx_software_development_kit | 𝑥 < 4.40.00 |
ti | simplelink_cc26xx_software_development_kit | 𝑥 < 4.40.00 |
ti | simplelink_cc32xx_software_development_kit | 𝑥 < 4.10.03 |
ti | simplelink_msp432e401y | - |
ti | simplelink_msp432e411y | - |
𝑥
= Vulnerable software versions