Description

The transport_message_handler function in SCP-Firmware release versions 2.11.0-2.15.0 does not properly handle errors, potentially allowing an Application Processor (AP) to cause a buffer overflow in System Control Processor (SCP) firmware.

INFO

Published Date :

2024-11-13T16:09:26.331Z

Last Modified :

2024-11-27T15:35:14.153Z

Source :

Arm
AFFECTED PRODUCTS

The following products are affected by CVE-2024-9413 vulnerability.

Vendors Products
Arm
  • Scp-firmware
  • Scp Firmware
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2024-9413.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact