Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9gfq-p9vq-r563

Опубликовано: 01 июл. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

In Das U-Boot through 2022.07-rc5, an integer signedness error and resultant stack-based buffer overflow in the "i2c md" command enables the corruption of the return address pointer of the do_i2c_md function.

In Das U-Boot through 2022.07-rc5, an integer signedness error and resultant stack-based buffer overflow in the "i2c md" command enables the corruption of the return address pointer of the do_i2c_md function.

EPSS

Процентиль: 54%
0.00309
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 3 лет назад

In Das U-Boot through 2022.07-rc5, an integer signedness error and resultant stack-based buffer overflow in the "i2c md" command enables the corruption of the return address pointer of the do_i2c_md function.

CVSS3: 9.8
nvd
больше 3 лет назад

In Das U-Boot through 2022.07-rc5, an integer signedness error and resultant stack-based buffer overflow in the "i2c md" command enables the corruption of the return address pointer of the do_i2c_md function.

msrc
5 месяцев назад

In Das U-Boot through 2022.07-rc5, an integer signedness error and resultant stack-based buffer overflow in the "i2c md" command enables the corruption of the return address pointer of the do_i2c_md function.

CVSS3: 9.8
debian
больше 3 лет назад

In Das U-Boot through 2022.07-rc5, an integer signedness error and res ...

suse-cvrf
больше 3 лет назад

Security update for u-boot

EPSS

Процентиль: 54%
0.00309
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-787