← Back

CVE-2016-10319

nvd nist
Published: Apr 6, 2017Modified: May 13, 2026

JSON object

Loading...
5.9
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 2.2 / Impact: 3.6
Source: NVD

Description

In ARM Trusted Firmware 1.2 and 1.3, a malformed firmware update SMC can result in copying unexpectedly large data into secure memory because of integer overflows. This affects certain cases involving execution of both AArch64 Generic Trusted Firmware (TF) BL1 code and other firmware update code.

Affected (2)

Arm Trusted Firmware
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Version 1.2
Version 1.3

Timeline

No history available yet.