Das U-Boot up to and including 2020.01 allows malicious users to bypass verified boot restrictions and subsequently boot arbitrary images by providing a crafted FIT image to a system configured to boot the default configuration.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
denx u-boot |
||
denx u-boot 2020.01 |
||
opensuse leap 15.2 |