CVE-2024-9413
CVSS V2 None
CVSS V3 None
Description
The transport_message_handler function in SCP-Firmware release versions 2.11.0-2.15.0 does not properly handle errors, potentially allowing an Application Processor (AP) to cause a buffer overflow in System Control Processor (SCP) firmware.
Overview
- CVE ID
- CVE-2024-9413
- Assigner
- Arm
- Vulnerability Status
- PUBLISHED
- Published Version
- 2024-11-13T16:09:26.331Z
- Last Modified Date
- 2024-11-13T16:09:26.331Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://developer.arm.com/Arm%20Security%20Center/SCP-Firmware%20Vulnerability |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2024-9413 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-9413 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-11-14 13:32:49 | Added to TrackCVE |