CVE-2024-5660: Critical severity Arm Cortex-a710 Firmware vulnerability

Published Dec 10, 2024
·
Updated

Use of Hardware Page Aggregation (HPA) and Stage-1 and/or Stage-2 translation on Cortex-A77, Cortex-A78, Cortex-A78C, Cortex-A78AE, Cortex-A710, Cortex-X1, Cortex-X1C, Cortex-X2, Cortex-X3, Cortex-X4, Cortex-X925, Neoverse V1, Neoverse V2, Neoverse V3, Neoverse V3AE, Neoverse N2 may permit bypass of Stage-2 translation and/or GPT protection.

Affected Software

32 affected components
All of the following
Arm Cortex-a710 Firmware
Arm Cortex-a710
All of the following
Arm Cortex-a77 Firmware
Arm Cortex-A77
All of the following
Arm Cortex-a78 Firmware
Arm Cortex-a78
All of the following
Arm Cortex-a78ae Firmware
Arm Cortex-a78ae
All of the following
Arm Cortex-a78c Firmware
Arm Cortex-a78c
All of the following
Arm Cortex-x1 Firmware
Arm Cortex-x1
All of the following
Arm Cortex-x1c Firmware
Arm Cortex-x1c
All of the following
Arm Cortex-x2 Firmware
Arm Cortex-x2
All of the following
Arm Cortex-x3 Firmware
Arm Cortex-x3
All of the following
Arm Cortex-x4 Firmware
Arm Cortex-x4
All of the following
Arm Cortex-x925 Firmware
Arm Cortex-x925
All of the following
Arm Neoverse N2 Firmware
Arm Neoverse N2
All of the following
Arm Neoverse-v1 Firmware
Arm Neoverse-v1
All of the following
Arm Neoverse-v2 Firmware
Arm Neoverse-v2
All of the following
Arm Neoverse-v3 Firmware
Arm Neoverse-v3
All of the following
Arm Neoverse-v3ae Firmware
Arm Neoverse-v3ae

Event History

Dec 10, 2024
CVE Published
via MITRE·01:55 PM
Data Sourced
via MITRE·01:55 PM
DescriptionWeakness
Data Sourced
via NVD·02:30 PM
DescriptionSeverityWeaknessAffected Software
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2024-5660?

CVE-2024-5660 has a classification that indicates it may pose a significant security risk due to its potential for bypassing protections.

2

How do I fix CVE-2024-5660?

To mitigate CVE-2024-5660, update the firmware of affected Arm processors to the latest version provided by Arm.

3

What devices are affected by CVE-2024-5660?

CVE-2024-5660 affects several Arm Cortex and Neoverse processors including Cortex-A77, Cortex-A78, Cortex-X1, and Neoverse V1 through V3AE.

4

What type of attack is CVE-2024-5660 associated with?

CVE-2024-5660 is associated with potential bypass attacks that exploit vulnerabilities in hardware page aggregation.

5

Is there a known exploit for CVE-2024-5660?

As of now, there are no publicly known exploits specifically targeting CVE-2024-5660.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203