SCMI Message Vulnerability in SCP-Firmware by ARM
CVE-2024-11863

Currently unrated

Key Information:

Vendor
ARM
Vendor
CVE Published:
14 January 2025

Summary

This vulnerability arises from the processing of specifically crafted SCMI messages sent to an SCP operating on SCP-Firmware versions up to and including 2.15.0. Such messages can trigger a Usage Fault, leading to a potential crash of the SCP, impacting overall system stability and security.

References

Timeline

  • Vulnerability published

.