Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown

CVE-2019-13106

Disclosure Date: August 06, 2019 (last updated November 27, 2024)
Das U-Boot versions 2016.09 through 2019.07-rc4 can memset() too much data while reading a crafted ext4 filesystem, which results in a stack buffer overflow and likely code execution.
Attacker Value
Unknown

CVE-2019-13105

Disclosure Date: August 06, 2019 (last updated November 27, 2024)
Das U-Boot versions 2019.07-rc1 through 2019.07-rc4 can double-free a cached block of data when listing files in a crafted ext4 filesystem.
0
Attacker Value
Unknown

CVE-2019-13104

Disclosure Date: August 06, 2019 (last updated November 27, 2024)
In Das U-Boot versions 2016.11-rc1 through 2019.07-rc4, an underflow can cause memcpy() to overwrite a very large amount of data (including the whole stack) while reading a crafted ext4 filesystem.
Attacker Value
Unknown

CVE-2019-13103

Disclosure Date: July 29, 2019 (last updated November 27, 2024)
A crafted self-referential DOS partition table will cause all Das U-Boot versions through 2019.07-rc4 to infinitely recurse, causing the stack to grow infinitely and eventually either crash or overwrite other data.