Access Permission Vulnerability in Trusty TLK: Limited Information Disclosure and Denial of Service

Access Permission Vulnerability in Trusty TLK: Limited Information Disclosure and Denial of Service

CVE-2021-34395 · MEDIUM Severity

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L

Trusty TLK contains a vulnerability in its access permission settings where it does not properly restrict access to a resource from a user with local privileges, which might lead to limited information disclosure, a low risk of modifcations to data, and limited denial of service.

Learn more about our User Device Pen Test.