Search CVE reports


Toggle filters

1 – 10 of 45 results


CVE-2024-57259

Medium priority
Needs evaluation

sqfs_search_dir in Das U-Boot before 2025.01-rc1 exhibits an off-by-one error and resultant heap memory corruption for squashfs directory listing because the path separator is not considered in a size calculation.

2 affected packages

u-boot, u-boot-nezha

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
u-boot Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
u-boot-nezha Needs evaluation Needs evaluation Not in release
Show less packages

CVE-2024-57258

Medium priority
Needs evaluation

Integer overflows in memory allocation in Das U-Boot before 2025.01-rc1 occur for a crafted squashfs filesystem via sbrk, via request2size, or because ptrdiff_t is mishandled on x86_64.

2 affected packages

u-boot, u-boot-nezha

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
u-boot Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
u-boot-nezha Needs evaluation Needs evaluation Not in release
Show less packages

CVE-2024-57257

Medium priority
Needs evaluation

A stack consumption issue in sqfs_size in Das U-Boot before 2025.01-rc1 occurs via a crafted squashfs filesystem with deep symlink nesting.

2 affected packages

u-boot, u-boot-nezha

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
u-boot Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
u-boot-nezha Needs evaluation Needs evaluation Not in release
Show less packages

CVE-2024-57256

Medium priority
Needs evaluation

An integer overflow in ext4fs_read_symlink in Das U-Boot before 2025.01-rc1 occurs for zalloc (adding one to an le32 variable) via a crafted ext4 filesystem with an inode size of 0xffffffff, resulting in a malloc of zero and...

2 affected packages

u-boot, u-boot-nezha

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
u-boot Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
u-boot-nezha Needs evaluation Needs evaluation Not in release
Show less packages

CVE-2024-57255

Medium priority
Needs evaluation

An integer overflow in sqfs_resolve_symlink in Das U-Boot before 2025.01-rc1 occurs via a crafted squashfs filesystem with an inode size of 0xffffffff, resulting in a malloc of zero and resultant memory overwrite.

2 affected packages

u-boot, u-boot-nezha

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
u-boot Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
u-boot-nezha Needs evaluation Needs evaluation Not in release
Show less packages

CVE-2024-57254

Medium priority
Needs evaluation

An integer overflow in sqfs_inode_size in Das U-Boot before 2025.01-rc1 occurs in the symlink size calculation via a crafted squashfs filesystem.

2 affected packages

u-boot, u-boot-nezha

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
u-boot Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
u-boot-nezha Needs evaluation Needs evaluation Not in release
Show less packages

CVE-2024-42040

Medium priority
Vulnerable

Buffer Overflow vulnerability in the net/bootp.c in DENEX U-Boot from its initial commit in 2002 (3861aa5) up to today on any platform allows an attacker on the local network to leak memory from four up to 32 bytes of memory...

2 affected packages

u-boot, u-boot-nezha

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
u-boot Vulnerable Vulnerable Vulnerable Vulnerable Vulnerable
u-boot-nezha Vulnerable Vulnerable Not in release
Show less packages

CVE-2023-48426

Medium priority
Not affected

u-boot bug that allows for u-boot shell and interrupt over UART

2 affected packages

u-boot, u-boot-nezha

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
u-boot Not affected Not affected Not affected Not affected Not affected
u-boot-nezha Not affected Not affected Not in release
Show less packages

CVE-2022-2347

Medium priority

Some fixes available 10 of 16

There exists an unchecked length field in UBoot. The U-Boot DFU implementation does not bound the length field in USB DFU download setup packets, and it does not verify that the transfer direction corresponds to the specified...

2 affected packages

u-boot, u-boot-nezha

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
u-boot Fixed Fixed Fixed Fixed Needs evaluation
u-boot-nezha Vulnerable Fixed Not in release Not in release Ignored
Show less packages

CVE-2022-33967

Medium priority

Some fixes available 3 of 5

squashfs filesystem implementation of U-Boot versions from v2020.10-rc2 to v2022.07-rc5 contains a heap-based buffer overflow vulnerability due to a defect in the metadata reading process. Loading a specially crafted squashfs...

1 affected package

u-boot

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
u-boot Not affected Fixed Fixed Fixed Needs evaluation
Show less packages