PatchSiren

Rockchip CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Rockchip CVE published 2026-08-19

CVE-2024-13942

The Secure BootROM of RK3588s SoC is vulnerable to a time-of-check to time-of-use attack when booting from external media. This issue arises because the BootROM reads the header of the next-stage loader twice: once partially and once completely. An attacker with physical access can modify the next-stage loader data on-the-fly, potentially leading to arbitrary code execution with the highest privileges (EL [truncated]