CVE-2025-0037
Severity CVSS v4.0:
Pending analysis
Type:
CWE-20
Input Validation
Publication date:
10/06/2025
Last modified:
12/06/2025
Description
In AMD Versal Adaptive SoC devices, the lack of address validation when executing PLM runtime services through the PLM firmware can allow access to isolated or protected memory spaces, resulting in the loss of integrity and confidentiality.
Impact
Base Score 3.x
6.60
Severity 3.x
MEDIUM