Insufficient argument checking in Secure state Entry functions in software using Cortex-M Security Extensions (CMSE), that has been compiled using toolchains that implement 'Arm v8-M Security Extensions Requirements on Development Tools' prior to version 1.4, allows an attacker to pass values to Secure state that are out of range for types smaller than 32-bits. Out of range values might lead to incorrect operations in secure state.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 09 Aug 2024 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Arm
Published:
Updated: 2024-08-09T18:51:26.411Z
Reserved: 2023-12-11T15:46:02.027Z
Link: CVE-2024-0151
Updated: 2024-08-01T17:41:15.963Z
Status : Awaiting Analysis
Published: 2024-04-24T18:15:11.130
Modified: 2024-11-21T08:45:56.783
Link: CVE-2024-0151
OpenCVE Enrichment
No data.
Weaknesses