Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vc9m-4w2w-692j

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

In ARM Trusted Firmware 1.2 and 1.3, a malformed firmware update SMC can result in copying unexpectedly large data into secure memory because of integer overflows. This affects certain cases involving execution of both AArch64 Generic Trusted Firmware (TF) BL1 code and other firmware update code.

In ARM Trusted Firmware 1.2 and 1.3, a malformed firmware update SMC can result in copying unexpectedly large data into secure memory because of integer overflows. This affects certain cases involving execution of both AArch64 Generic Trusted Firmware (TF) BL1 code and other firmware update code.

EPSS

Процентиль: 63%
0.00439
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-190

Связанные уязвимости

CVSS3: 5.9
nvd
почти 9 лет назад

In ARM Trusted Firmware 1.2 and 1.3, a malformed firmware update SMC can result in copying unexpectedly large data into secure memory because of integer overflows. This affects certain cases involving execution of both AArch64 Generic Trusted Firmware (TF) BL1 code and other firmware update code.

EPSS

Процентиль: 63%
0.00439
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-190