CVE-2024-54084

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Mar 11, 2025
CWE ID 367

Summary

CVE-2024-54084 is a newly disclosed vulnerability affecting the BIOS of APTIOV systems. This issue involves a Time-of-check Time-of-use (TOCTOU) race condition, which can be exploited locally by an attacker. By manipulating the timing of critical operations, the attacker may cause the system to execute arbitrary code. The precise exploit methodology remains undisclosed, but the potential impact is significant, making it essential for APTIOV users to apply relevant patches as soon as they become available.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share