#VU22709 Out-of-bounds read in Open Enclave SDK - CVE-2019-1370
Published: November 12, 2019 / Updated: November 13, 2019
Open Enclave SDK
Microsoft
Description
The vulnerability allows a local user to gain access to potentially sensitive information.
The vulnerability exists due to a boundary condition within the Open Enclave SDK. A local user with access to the enclave application can trigger out-of-bounds read error and read contents of memory stored in the Enclave.