Security Flaw in Arm Trusted Firmware Affecting AMD Processors
CVE-2025-48507

8.6HIGH

What is CVE-2025-48507?

A vulnerability exists within the Arm Trusted Firmware (TF-A) in AMD processors, where the security state of the calling processor is not adequately enforced. This oversight may permit non-secure processors to gain unauthorized access to sensitive secure memories, perform cryptographic operations, and manipulate system-on-chip (SoC) subsystems. Proper mitigation is essential to safeguard against potential exploitation and to secure critical resources from unauthorized access.

Affected Version(s)

Kria™ SOM Version TBD

Zynq™ UltraScale+™ MPSoCs Version TBD

Zynq™ UltraScale+™ RFSoCs Version TBD

References

CVSS V4

Score:
8.6
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-48507 : Security Flaw in Arm Trusted Firmware Affecting AMD Processors