NA

CVE-2022-2347

Published: 23/09/2022 Updated: 29/09/2022
CVSS v3 Base Score: 7.1 | Impact Score: 6 | Exploitability Score: 0.5
VMScore: 0

Vulnerability Summary

It exists that U-Boot incorrectly handled certain NFS lookup replies. A remote attacker could use this issue to cause U-Boot to crash, resulting in a denial of service, or possibly execute arbitrary code. This issue only affected Ubuntu 18.04 LTS, Ubuntu 20.04 LTS, and Ubuntu 22.04 LTS. (CVE-2022-30767)

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

denx u-boot

Vendor Advisories

Debian Bug report logs - #1014959 u-boot: CVE-2022-2347 Package: src:u-boot; Maintainer for src:u-boot is Vagrant Cascadian <vagrant@debianorg>; Reported by: Moritz Mühlenhoff <jmm@inutilorg> Date: Fri, 15 Jul 2022 10:33:04 UTC Severity: important Tags: security Reply or subscribe to this bug Toggle useless ...
Several security issues were fixed in u-boot ...