CVE-2016-10319
5.9
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 2.2 / Impact: 3.6
Source: NVD
Description
In ARM Trusted Firmware 1.2 and 1.3, a malformed firmware update SMC can result in copying unexpectedly large data into secure memory because of integer overflows. This affects certain cases involving execution of both AArch64 Generic Trusted Firmware (TF) BL1 code and other firmware update code.
Affected (2)
Products: Arm Trusted Firmware Project: Arm Trusted Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.2 |
References (2)
Source: cve@mitre.org
Issue TrackingPatchVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingPatchVDB Entry
Timeline
No history available yet.