CVE-2024-5660

CRITICAL

ARM - Privilege Escalation

Title source: llm
STIX 2.1

Description

Use of Hardware Page Aggregation (HPA) and Stage-1 and/or Stage-2 translation on Cortex-A77, Cortex-A78, Cortex-A78C, Cortex-A78AE, Cortex-A710, Cortex-X1, Cortex-X1C, Cortex-X2, Cortex-X3, Cortex-X4, Cortex-X925, Neoverse V1, Neoverse V2, Neoverse V3, Neoverse V3AE, Neoverse N2 may permit bypass of Stage-2 translation and/or GPT protection.

Scores

CVSS v3 9.8
EPSS 0.0014
EPSS Percentile 33.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact total

Details

CWE
CWE-668
Status published
Products (16)
arm/cortex-a710_firmware
arm/cortex-a77_firmware
arm/cortex-a78_firmware
arm/cortex-a78ae_firmware
arm/cortex-a78c_firmware
arm/cortex-x1_firmware
arm/cortex-x1c_firmware
arm/cortex-x2_firmware
arm/cortex-x3_firmware
arm/cortex-x4_firmware
... and 6 more
Published Dec 10, 2024
Tracked Since Feb 18, 2026