Описание
DENX U-Boot through 2018.09-rc1 has a remotely exploitable buffer overflow via a malicious TFTP server because TFTP traffic is mishandled. Also, local exploitation can occur via a crafted kernel image.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | not-affected | 2019.07+dfsg-1ubuntu4~18.04.1 |
| cosmic | ignored | end of life |
| devel | not-affected | 2020.04+dfsg-2ubuntu1 |
| disco | ignored | end of life |
| eoan | ignored | end of life |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was needed] |
| esm-infra/bionic | not-affected | 2019.07+dfsg-1ubuntu4~18.04.1 |
| esm-infra/focal | not-affected | 2019.07+dfsg-1ubuntu6 |
| esm-infra/xenial | needed | |
| focal | not-affected | 2019.07+dfsg-1ubuntu6 |
Показывать по
EPSS
10 Critical
CVSS2
9.8 Critical
CVSS3
Связанные уязвимости
DENX U-Boot through 2018.09-rc1 has a remotely exploitable buffer overflow via a malicious TFTP server because TFTP traffic is mishandled. Also, local exploitation can occur via a crafted kernel image.
DENX U-Boot through 2018.09-rc1 has a remotely exploitable buffer over ...
DENX U-Boot through 2018.09-rc1 has a remotely exploitable buffer overflow via a malicious TFTP server because TFTP traffic is mishandled. Also, local exploitation can occur via a crafted kernel image.
EPSS
10 Critical
CVSS2
9.8 Critical
CVSS3