Description
When the Global Pointer (GP) relative addressing is enabled (CONFIG_RISCV_GP=y), the gp reg points at 0x800 bytes past the start of the .sdata section which is then used by the linker to relax accesses to global symbols.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-33714 | When the Global Pointer (GP) relative addressing is enabled (CONFIG_RISCV_GP=y), the gp reg points at 0x800 bytes past the start of the .sdata section which is then used by the linker to relax accesses to global symbols. |
References
History
Mon, 03 Feb 2025 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Zephyrproject
Zephyrproject zephyr |
|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:o:zephyrproject:zephyr:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Zephyrproject
Zephyrproject zephyr |
Mon, 18 Nov 2024 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Zephyrproject-rtos
Zephyrproject-rtos zephyr |
|
| CPEs | cpe:2.3:o:zephyrproject-rtos:zephyr:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Zephyrproject-rtos
Zephyrproject-rtos zephyr |
|
| Metrics |
ssvc
|
Fri, 15 Nov 2024 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | When the Global Pointer (GP) relative addressing is enabled (CONFIG_RISCV_GP=y), the gp reg points at 0x800 bytes past the start of the .sdata section which is then used by the linker to relax accesses to global symbols. | |
| Title | arch: riscv: userspace: potential security risk when CONFIG_RISCV_GP=y | |
| Weaknesses | CWE-270 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: zephyr
Published:
Updated: 2024-11-18T17:45:21.489Z
Reserved: 2024-11-15T16:34:35.784Z
Link: CVE-2024-11263
Updated: 2024-11-18T17:45:16.716Z
Status : Analyzed
Published: 2024-11-15T23:15:10.557
Modified: 2025-02-03T20:09:54.800
Link: CVE-2024-11263
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD