Security Advisory

CVE-2024-56187

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-03-10 18:19:49
Last updated 2025-03-11 20:30:28
Assigner Google_Devices
State PUBLISHED

Description

In ppcfw_deny_sec_dram_access of ppcfw.c, there is a possible arbitrary read from TEE memory due to a logic error in the code. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.