CVE-2024-11864

CVE-2024-11864: SCP-Firmware Vulnerability

Vendor Arm
Product SCP-Firmware
Weakness CWE-755
Published January 14, 2025
Last update January 14, 2025

CVSS base score

What the vulnerability does

01Description

Specifically crafted SCMI messages sent to an SCP running SCP-Firmware release versions up to and including 2.15.0 may lead to a Usage Fault and crash the SCP

Key dates

02Disclosure timeline

January 14, 2025 CVE published
January 14, 2025 Record updated