CVE-2026-46728
- EPSS -
- Veröffentlicht 16.05.2026 21:26:49
- Zuletzt bearbeitet 16.05.2026 22:16:13
Das U-Boot before 2026.04 allows FIT (Flat Image Tree) signature verification bypass because hashed-nodes is omitted from a hash.
CVE-2026-33243
- EPSS 0.01%
- Veröffentlicht 20.03.2026 22:51:15
- Zuletzt bearbeitet 26.03.2026 21:17:05
barebox is a bootloader. In barebox from version 2016.03.0 to before version 2026.03.1 (and the corresponding backport to 2025.09.3), an attacker could exploit a FIT signature verification vulnerability to trick the bootloader into booting different ...
CVE-2025-24857
- EPSS 0.03%
- Veröffentlicht 10.12.2025 00:00:00
- Zuletzt bearbeitet 21.01.2026 19:14:47
Improper access control for volatile memory containing boot code in Universal Boot Loader (U-Boot) before 2017.11 and Qualcomm chips IPQ4019, IPQ5018, IPQ5322, IPQ6018, IPQ8064, IPQ8074, and IPQ9574 could allow an attacker to execute arbitrary code.
CVE-2025-45512
- EPSS 0.18%
- Veröffentlicht 05.08.2025 19:15:32
- Zuletzt bearbeitet 02.10.2025 17:35:37
A lack of signature verification in the bootloader of DENX Software Engineering Das U-Boot (U-Boot) v1.1.3 allows attackers to install crafted firmware files, leading to arbitrary code execution.
CVE-2024-57259
- EPSS 0.07%
- Veröffentlicht 18.02.2025 23:15:09
- Zuletzt bearbeitet 03.11.2025 20:16:55
sqfs_search_dir in Das U-Boot before 2025.01-rc1 exhibits an off-by-one error and resultant heap memory corruption for squashfs directory listing because the path separator is not considered in a size calculation.
CVE-2024-57258
- EPSS 0.04%
- Veröffentlicht 18.02.2025 23:15:09
- Zuletzt bearbeitet 12.05.2026 13:16:23
Integer overflows in memory allocation in Das U-Boot before 2025.01-rc1 occur for a crafted squashfs filesystem via sbrk, via request2size, or because ptrdiff_t is mishandled on x86_64.
CVE-2024-57257
- EPSS 0.03%
- Veröffentlicht 18.02.2025 23:15:09
- Zuletzt bearbeitet 03.11.2025 20:16:55
A stack consumption issue in sqfs_size in Das U-Boot before 2025.01-rc1 occurs via a crafted squashfs filesystem with deep symlink nesting.
CVE-2024-57256
- EPSS 0.06%
- Veröffentlicht 18.02.2025 23:15:09
- Zuletzt bearbeitet 12.05.2026 13:16:22
An integer overflow in ext4fs_read_symlink in Das U-Boot before 2025.01-rc1 occurs for zalloc (adding one to an le32 variable) via a crafted ext4 filesystem with an inode size of 0xffffffff, resulting in a malloc of zero and resultant memory overwrit...
CVE-2024-57255
- EPSS 0.06%
- Veröffentlicht 18.02.2025 23:15:09
- Zuletzt bearbeitet 03.11.2025 20:16:54
An integer overflow in sqfs_resolve_symlink in Das U-Boot before 2025.01-rc1 occurs via a crafted squashfs filesystem with an inode size of 0xffffffff, resulting in a malloc of zero and resultant memory overwrite.
CVE-2024-57254
- EPSS 0.06%
- Veröffentlicht 18.02.2025 23:15:09
- Zuletzt bearbeitet 03.11.2025 20:16:54
An integer overflow in sqfs_inode_size in Das U-Boot before 2025.01-rc1 occurs in the symlink size calculation via a crafted squashfs filesystem.