Security Flaw in Versal™ Adaptive SoC's Arm® Trusted Firmware Affecting Processors
CVE-2025-54515

1LOW

What is CVE-2025-54515?

A security flaw exists within the Arm® Trusted Firmware of Versal™ Adaptive SoC that misconfigures the Secure Flag for Power State Coordination Interface (PSCI) commands. This misconfiguration allows PSCI requests to be treated as originating from secure processors, rather than reflecting their actual non-secure state. As a result, this may lead to unauthorized access to system resources and compromise the integrity of the secure environment.

Affected Version(s)

Alveo™ V80 Compute Accelerator 2025.2

Versal™ AI Core Series 2025.2

Versal™ AI Edge Series 2025.2

References

CVSS V4

Score:
1
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-54515 : Security Flaw in Versal™ Adaptive SoC's Arm® Trusted Firmware Affecting Processors