Vulnerabilities > ARM > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-12-15 CVE-2022-46392 Information Exposure Through Discrepancy vulnerability in multiple products
An issue was discovered in Mbed TLS before 2.28.2 and 3.x before 3.3.0.
network
high complexity
arm fedoraproject CWE-203
5.3
2022-09-01 CVE-2022-36449 Use After Free vulnerability in ARM Bifrost, Midgard and Valhall
An issue was discovered in the Arm Mali GPU Kernel Driver.
network
low complexity
arm CWE-416
6.5
2022-03-13 CVE-2022-23960 Certain Arm Cortex and Neoverse processors through 2022-03-08 do not properly restrict cache speculation, aka Spectre-BHB.
local
high complexity
xen arm debian
5.6
2022-03-01 CVE-2021-43619 Classic Buffer Overflow vulnerability in ARM Trusted Firmware-M 1.4.0/1.4.1
Trusted Firmware M 1.4.x through 1.4.1 has a buffer overflow issue in the Firmware Update partition.
local
low complexity
arm CWE-120
4.6
2022-02-28 CVE-2021-44331 Out-of-bounds Write vulnerability in ARM Adaptive Scalable Texture Compression Encoder 3.2.0
ARM astcenc 3.2.0 is vulnerable to Buffer Overflow in function encode_ise().
network
arm CWE-787
6.8
2021-08-23 CVE-2020-36477 Improper Certificate Validation vulnerability in ARM Mbed TLS
An issue was discovered in Mbed TLS before 2.24.0.
network
high complexity
arm CWE-295
5.9
2021-07-19 CVE-2020-36421 Information Exposure Through Discrepancy vulnerability in multiple products
An issue was discovered in Arm Mbed TLS before 2.23.0.
network
low complexity
arm debian CWE-203
5.3
2021-07-19 CVE-2020-36422 Information Exposure Through Discrepancy vulnerability in multiple products
An issue was discovered in Arm Mbed TLS before 2.23.0.
network
low complexity
arm debian CWE-203
5.3
2021-07-19 CVE-2020-36424 Information Exposure Through Discrepancy vulnerability in multiple products
An issue was discovered in Arm Mbed TLS before 2.24.0.
local
high complexity
arm debian CWE-203
4.7
2021-07-19 CVE-2020-36425 Improper Certificate Validation vulnerability in multiple products
An issue was discovered in Arm Mbed TLS before 2.24.0.
network
low complexity
arm debian CWE-295
5.3