CVE-2025-48507
HIGHTrusted Firmware - Info Disclosure
Title source: llmDescription
The security state of the calling processor into Trusted Firmware (TF-A) is not used and could potentially allow non-secure processors access to secure memories, access to crypto operations, and the ability to turn on and off subsystems within the SOC.
Exploits (1)
Scores
CVSS v4
8.6
EPSS
0.0004
EPSS Percentile
10.9%
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:P/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H
Details
CWE
CWE-1284
Status
published
Products (3)
AMD/Kria™ SOM
Version TBD
AMD/Zynq™ UltraScale+™ MPSoCs
Version TBD
AMD/Zynq™ UltraScale+™ RFSoCs
Version TBD
Published
Nov 23, 2025
Tracked Since
Feb 18, 2026