Integer Overflow Vulnerability in ARM Trusted Firmware by ARM Holdings
CVE-2016-10319
5.9MEDIUM
What is CVE-2016-10319?
In versions 1.2 and 1.3 of ARM Trusted Firmware, a vulnerability exists that allows a malformed firmware update SMC to cause integer overflows. This can result in unexpectedly large data being copied into secure memory, which may compromise system integrity. The vulnerability primarily affects scenarios involving the execution of AArch64 Generic Trusted Firmware (TF) BL1 code along with other firmware update operations.