Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-1000205

Опубликовано: 26 июн. 2018
Источник: debian
EPSS Низкий

Описание

U-Boot contains a CWE-20: Improper Input Validation vulnerability in Verified boot signature validation that can result in Bypass verified boot. This attack appear to be exploitable via Specially crafted FIT image and special device memory functionality.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
u-bootunfixedpackage

Примечания

  • No security impact as supported/packaged in Debian

EPSS

Процентиль: 40%
0.00182
Низкий

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 7 лет назад

U-Boot contains a CWE-20: Improper Input Validation vulnerability in Verified boot signature validation that can result in Bypass verified boot. This attack appear to be exploitable via Specially crafted FIT image and special device memory functionality.

CVSS3: 5.5
nvd
больше 7 лет назад

U-Boot contains a CWE-20: Improper Input Validation vulnerability in Verified boot signature validation that can result in Bypass verified boot. This attack appear to be exploitable via Specially crafted FIT image and special device memory functionality.

CVSS3: 5.5
github
больше 3 лет назад

U-Boot contains a CWE-20: Improper Input Validation vulnerability in Verified boot signature validation that can result in Bypass verified boot. This attack appear to be exploitable via Specially crafted FIT image and special device memory functionality.

EPSS

Процентиль: 40%
0.00182
Низкий