Debian Llvm-Toolchain-18 vulnerabilities
2 known vulnerabilities affecting debian/llvm-toolchain-18.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
LOW2
Vulnerabilities
Page 1 of 1
CVE-2024-7883LOWCVSS 3.7fixed in llvm-toolchain-18 1:18.1.8-20 (sid)2024
CVE-2024-7883 [LOW] CVE-2024-7883: llvm-toolchain-14 - When using Arm Cortex-M Security Extensions (CMSE), Secure stack contents can b...
When using Arm Cortex-M Security Extensions (CMSE), Secure stack contents can be leaked to Non-secure state via floating-point registers when a Secure to Non-secure function call is made that returns a floating-point value and when this is the first use of floating-point since entering Secure state. This allows an attacker to read a limited quantity of Secure
debian
CVE-2024-31852LOWCVSS 5.9fixed in llvm-toolchain-18 1:18.1.3-1 (sid)2024
CVE-2024-31852 [MEDIUM] CVE-2024-31852: llvm-toolchain-14 - LLVM before 18.1.3 generates code in which the LR register can be overwritten wi...
LLVM before 18.1.3 generates code in which the LR register can be overwritten without data being saved to the stack, and thus there can sometimes be an exploitable error in the flow of control. This affects the ARM backend and can be demonstrated with Clang. NOTE: the vendor perspective is "we don't have strong objections for a CVE to be created ... It d
debian