CVE-2024-10929: Spectre-BSE
Published Jan 22, 2025
·Updated
In certain circumstances, an issue in Arm Cortex-A57, Cortex-A72 (revisions before r1p0), Cortex-A73 and Cortex-A75 may allow an adversary to gain a weak form of control over the victim's branch history.
Affected Software
12 affected components
Arm Cortex-A57>r1p0
Arm Cortex-A72>r1p0
Arm Cortex-A73
Arm Cortex-A75
All of the following
Arm Cortex-a57 Firmware
Arm Cortex-A57
All of the following
Arm Cortex-a72 Firmware
Arm Cortex-A72
All of the following
Arm Cortex-a73 Firmware
Arm Cortex-A73
All of the following
Arm Cortex-a75 Firmware
Arm Cortex-A75
Event History
Jan 22, 2025
CVE Published
via MITRE·04:05 PM
Data Sourced
via MITRE·04:05 PM
DescriptionWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-10929?
CVE-2024-10929 is considered a medium severity vulnerability.
2
How do I fix CVE-2024-10929?
To mitigate CVE-2024-10929, upgrading to the latest firmware provided by Arm for the affected Cortex-A72, Cortex-A73, and Cortex-A75 processors is recommended.
3
What processors are affected by CVE-2024-10929?
CVE-2024-10929 affects Arm Cortex-A72 (revisions before r1p0), Cortex-A73, and Cortex-A75 processors.
4
What type of attack does CVE-2024-10929 facilitate?
CVE-2024-10929 may allow an adversary to gain a weak form of control over the victim's branch history.
5
When was CVE-2024-10929 disclosed?
CVE-2024-10929 was disclosed in 2024, but the specific publication date is not provided.