Name
CVE-2024-0151
Description
Insufficient argument checking in Secure state Entry functions in software using Cortex-M Security Extensions (CMSE), that has been compiled using toolchains that implement 'Arm v8-M Security Extensions Requirements on Development Tools' prior to version 1.4, allows an attacker to pass values to Secure state that are out of range for types smaller than 32-bits. Out of range values might lead to incorrect operations in secure state.
CWEs
Published Date
Updated Date
Workaround
-
Advisories
Analysis#
Vulnerability Ratings#
6.5
CVSSv31
NaN
other
Others affected components#
Resolved with patches#
llvm (yocto:kirkstone)
#
Title
Author
Resolve
1
Patch #1
Deepesh Varatharajan <Deepesh.Varatharajan@windriver.com>
CVE-2024-0151
llvm (yocto:scarthgap)
#
Title
Author
Resolve
1
Patch #1
Deepthi Hemraj <Deepthi.Hemraj@windriver.com>
CVE-2024-0151
rust-llvm (yocto:scarthgap)
#
Title
Author
Resolve
1
Patch #1
Deepthi Hemraj <Deepthi.Hemraj@windriver.com>
CVE-2024-0151