Arm
arm
193 CVEs • 141 products
Products (141)
Click to collapseToggle
Products (141)
Click to collapse
CVEs (193)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Arm 25th Gen Gpu Architecture Firmware Valhall Gpu FirmwareJun 17, 2026 Jul 1, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Arm Ltd Valhall GPU Firmware, Arm Ltd Arm 5th Gen GPU Architecture Firmware allows a local non-privileged user to make improper GPU...Show more |
1Arm 2Bifrost Gpu Kernel Driver Valhall Gpu Kernel DriverJun 17, 2026 Jun 7, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver allows a local non-privileged user to make improper GPU memory processing operations to gain access to already freed me...Show more |
1Arm 15th Gen Gpu Architecture Kernel Driver Jun 17, 2026 May 3, 2024 N/A· v4 6.7 MEDIUM· v3 N/A· v2 Use After Free vulnerability in Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user to make improper GPU memory processing operations. If the system’s memory is carefully prepared by the...Show more |
1Arm 35th Gen Gpu Architecture Kernel Driver Bifrost Gpu Kernel DriverValhall Gpu Kernel DriverJun 17, 2026 May 3, 2024 N/A· v4 7.4 HIGH· v3 N/A· v2 Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user to make improper GPU memory proc...Show more |
1Arm 25th Gen Gpu Architecture Kernel Driver Valhall Gpu Kernel DriverJun 17, 2026 May 3, 2024 N/A· v4 5.1 MEDIUM· v3 N/A· v2 Use After Free vulnerability in Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user to make improper GPU memory processing operations. If the system’s...Show more |
Buffer Overflow vulnerability in ARM mbed-os v.6.17.0 allows a remote attacker to execute arbitrary code via a crafted script to the hciTrSerialRxIncoming function. |
1Arm 35th Gen Gpu Architecture Kernel Driver Bifrost Gpu Kernel DriverValhall Gpu Kernel DriverJun 17, 2026 Apr 19, 2024 N/A· v4 5.9 MEDIUM· v3 N/A· v2 Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user to make improper GPU memory proc...Show more |
1Arm 45th Gen Gpu Architecture Kernel Driver Bifrost Gpu Kernel DriverMidgard Gpu Kernel Driver+1 moreJun 17, 2026 Apr 19, 2024 N/A· v4 6.8 MEDIUM· v3 N/A· v2 Use After Free vulnerability in Arm Ltd Midgard GPU Kernel Driver, Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged us...Show more |
2Arm Trustedfirmware2Mbed Tls Mbed TlsJun 17, 2026 Apr 3, 2024 N/A· v4 9.1 CRITICAL· v3 N/A· v2 In Mbed TLS 3.3.0 through 3.5.2 before 3.6.0, a malicious client can cause information disclosure or a denial of service because of a stack buffer over-read (of less than 256 bytes) in a TLS 1.3 server via a TLS 3.1 Clie...Show more |
2Arm Trustedfirmware2Mbed Tls Mbed TlsJun 17, 2026 Apr 3, 2024 N/A· v4 5.4 MEDIUM· v3 N/A· v2 An issue was discovered in Mbed TLS 3.5.x before 3.6.0. When negotiating the TLS version on the server side, it can fall back to the TLS 1.2 implementation of the protocol if it is disabled. If the TLS 1.2 implementation...Show more |
2Arm Trustedfirmware2Mbed Tls Mbed TlsJun 17, 2026 Apr 3, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 An issue was discovered in Mbed TLS 3.5.x before 3.6.0. When an SSL context was reset with the mbedtls_ssl_session_reset() API, the maximum TLS version to be negotiated was not restored to the configured one. An attacker...Show more |
3Arm FedoraprojectTrustedfirmware4Fedora Mbed CryptoMbed Tls+1 moreJun 17, 2026 Mar 29, 2024 N/A· v4 8.2 HIGH· v3 N/A· v2 An issue was discovered in Mbed TLS 2.18.0 through 2.28.x before 2.28.8 and 3.x before 3.6.0, and Mbed Crypto. The PSA Crypto API mishandles shared memory. |
1Arm 45th Gen Gpu Architecture Kernel Driver Bifrost Gpu Kernel DriverMidgard Gpu Kernel Driver+1 moreJun 17, 2026 Mar 4, 2024 N/A· v4 7.0 HIGH· v3 N/A· v2 Use After Free vulnerability in Arm Ltd Midgard GPU Kernel Driver, Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged us...Show more |
1Arm 45th Gen Gpu Architecture Kernel Driver Bifrost Gpu Kernel DriverMidgard Gpu Kernel Driver+1 moreJun 17, 2026 Mar 4, 2024 N/A· v4 8.4 HIGH· v3 N/A· v2 Use After Free vulnerability in Arm Ltd Midgard GPU Kernel Driver, Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged us...Show more |
1Arm 35th Gen Gpu Architecture Kernel Driver Bifrost Gpu Kernel DriverValhall Gpu Kernel DriverJun 17, 2026 Feb 5, 2024 N/A· v4 7.8 HIGH· v3 N/A· v2 Out-of-bounds Write vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user to make improper GPU memory...Show more |
1Arm 2Bifrost Gpu Kernel Driver Valhall Gpu Kernel DriverJun 17, 2026 Feb 5, 2024 N/A· v4 7.0 HIGH· v3 N/A· v2 Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver allows a local non-privileged user to make improper memory processing operations to exploit a software race condition....Show more |
2Arm Trustedfirmware2Mbed Tls Mbed TlsJun 17, 2026 Jan 31, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 Integer Overflow vulnerability in Mbed TLS 2.x before 2.28.7 and 3.x before 3.5.2, allows attackers to cause a denial of service (DoS) via mbedtls_x509_set_extension(). |
2Arm Trustedfirmware2Mbed Tls Mbed TlsJun 17, 2026 Jan 31, 2024 N/A· v4 5.5 MEDIUM· v3 N/A· v2 An issue was discovered in Mbed TLS 2.x before 2.28.7 and 3.x before 3.5.2. There was a timing side channel in RSA private operations. This side channel could be sufficient for a local attacker to recover the plaintext....Show more |
2Arm Trustedfirmware2Mbed Tls Mbed TlsJun 17, 2026 Jan 21, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 An issue was discovered in Mbed TLS 3.5.1. There is persistent handshake denial if a client sends a TLS 1.3 ClientHello without extensions. |
An issue was discovered in Mbed TLS through 3.5.1. In mbedtls_ssl_session_reset, the maximum negotiable TLS version is mishandled. For example, if the last connection negotiated TLS 1.2, then 1.2 becomes the new maximum. |