PT-2021-20920 · Arm+1 · Arm Cortex-M33+3
Published
2021-08-23
·
Updated
2022-07-12
·
CVE-2021-35465
CVSS v2.0
3.6
Low
| Vector | AV:L/AC:L/Au:N/C:P/I:P/A:N |
Name of the Vulnerable Software and Affected Versions:
Arm Cortex-M33 versions r0p0 through r1p0
Arm Cortex-M35P version r0
Arm Cortex-M55 versions r0p0 through r1p0
Arm China STAR-MC1 (in the STAR SE configuration)
Description:
The issue arises from certain Arm products not properly considering the effect of exceptions on a VLLDM instruction, allowing a Non-secure handler to have read or write access to part of a Secure context.
Recommendations:
For Arm Cortex-M33 versions r0p0 through r1p0, update to a version released after 2021-08-23 to resolve the issue.
For Arm Cortex-M35P version r0, update to a version released after 2021-08-23 to resolve the issue.
For Arm Cortex-M55 versions r0p0 through r1p0, update to a version released after 2021-08-23 to resolve the issue.
For Arm China STAR-MC1 (in the STAR SE configuration), update to a version released after 2021-08-23 to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Arm China Star-Mc1
Arm Cortex-M33
Arm Cortex-M35P
Arm Cortex-M55