Vulnerabilities > ARM

DATE CVE VULNERABILITY TITLE RISK
2021-05-10 CVE-2021-28663 Use After Free vulnerability in ARM products
The Arm Mali GPU kernel driver allows privilege escalation or information disclosure because GPU memory operations are mishandled, leading to a use-after-free.
network
low complexity
arm CWE-416
8.8
2021-05-10 CVE-2021-28664 Out-of-bounds Write vulnerability in ARM products
The Arm Mali GPU kernel driver allows privilege escalation or a denial of service (memory corruption) because an unprivileged user can achieve read/write access to read-only pages.
network
low complexity
arm CWE-787
8.8
2020-12-24 CVE-2020-24658 Allocation of Resources Without Limits or Throttling vulnerability in ARM Compiler
Arm Compiler 5 through 5.06u6 has an error in a stack protection feature designed to help spot stack-based buffer overflows in local arrays.
local
low complexity
arm CWE-770
7.8
2020-11-12 CVE-2020-16273 Integer Underflow (Wrap or Wraparound) vulnerability in ARM Armv8-M Firmware
In Arm software implementing the Armv8-M processors (all versions), the stack selection mechanism could be influenced by a stack-underflow attack in v8-M TrustZone based processors.
local
low complexity
arm CWE-191
7.8
2020-09-02 CVE-2020-16150 Information Exposure Through Discrepancy vulnerability in multiple products
A Lucky 13 timing side channel in mbedtls_ssl_decrypt_buf in library/ssl_msg.c in Trusted Firmware Mbed TLS through 2.23.0 allows an attacker to recover secret key information.
local
low complexity
arm fedoraproject debian CWE-203
5.5
2020-06-18 CVE-2020-12887 Memory Leak vulnerability in ARM Mbed-Coap 5.1.5
Memory leaks were discovered in the CoAP library in Arm Mbed OS 5.15.3 when using the Arm mbed-coap library 5.1.5.
network
low complexity
arm CWE-401
7.5
2020-06-18 CVE-2020-12886 Out-of-bounds Read vulnerability in ARM Mbed OS 5.15.3
A buffer over-read was discovered in the CoAP library in Arm Mbed OS 5.15.3.
network
low complexity
arm CWE-125
critical
9.1
2020-06-18 CVE-2020-12885 Infinite Loop vulnerability in ARM Mbed OS 5.15.3
An infinite loop was discovered in the CoAP library in Arm Mbed OS 5.15.3.
network
low complexity
arm CWE-835
7.5
2020-06-18 CVE-2020-12884 Out-of-bounds Read vulnerability in ARM Mbed OS 5.15.3
A buffer over-read was discovered in the CoAP library in Arm Mbed OS 5.15.3.
network
low complexity
arm CWE-125
critical
9.1
2020-06-18 CVE-2020-12883 Out-of-bounds Read vulnerability in ARM Mbed OS 5.15.3
Buffer over-reads were discovered in the CoAP library in Arm Mbed OS 5.15.3.
network
low complexity
arm CWE-125
critical
9.1