ZeroHour

CVE-2021-35465

CVSS 3.1
3.4 low
EPSS
<1%p22
Published
()
Modified
Description

Certain Arm products before 2021-08-23 do not properly consider the effect of exceptions on a VLLDM instruction. A Non-secure handler may have read or write access to part of a Secure context. This affects Arm Cortex-M33 r0p0 through r1p0, Arm Cortex-M35P r0, Arm Cortex-M55 r0p0 through r1p0, and Arm China STAR-MC1 (in the STAR SE configuration).

Vendors
arm
Products
cortex-m33 firmware, cortex-m35p firmware, cortex-m55 firmware, china star-mc1 firmware
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.