Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jgm9-xpcw-hqh9

Опубликовано: 26 авг. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

An issue was discovered in Denx U-Boot before 2026.04. An integer overflow vulnerability exists in function ext4fs_get_bgdtable, the size calculation can lead to under allocation and this underallocated buffer will be used in memcpy() which could lead to arbitrary code execution, a denial of service, or other unspecified impacts.

An issue was discovered in Denx U-Boot before 2026.04. An integer overflow vulnerability exists in function ext4fs_get_bgdtable, the size calculation can lead to under allocation and this underallocated buffer will be used in memcpy() which could lead to arbitrary code execution, a denial of service, or other unspecified impacts.

EPSS

Процентиль: 43%
0.00535
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-122

Связанные уязвимости

CVSS3: 9.8
ubuntu
15 дней назад

An issue was discovered in Denx U-Boot before 2026.04. An integer overflow vulnerability exists in function ext4fs_get_bgdtable, the size calculation can lead to under allocation and this underallocated buffer will be used in memcpy() which could lead to arbitrary code execution, a denial of service, or other unspecified impacts.

CVSS3: 9.8
nvd
15 дней назад

An issue was discovered in Denx U-Boot before 2026.04. An integer overflow vulnerability exists in function ext4fs_get_bgdtable, the size calculation can lead to under allocation and this underallocated buffer will be used in memcpy() which could lead to arbitrary code execution, a denial of service, or other unspecified impacts.

CVSS3: 9.8
debian
15 дней назад

An issue was discovered in Denx U-Boot before 2026.04. An integer over ...

EPSS

Процентиль: 43%
0.00535
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-122