Information on source package u-boot

Available versions

ReleaseVersion
jessie2014.10+dfsg1-5
stretch2016.11+dfsg1-4
buster2019.01+dfsg-7
bullseye2021.01+dfsg-5
bookworm2023.01+dfsg-2+deb12u1
trixie2024.01+dfsg-5
sid2024.01+dfsg-5

Open issues

BugjessiestretchbusterbullseyebookwormtrixiesidDescription
CVE-2024-42040vulnerablevulnerable (no DSA, postponed)vulnerable (no DSA, postponed)vulnerable (no DSA, postponed)vulnerable (no DSA, postponed)vulnerablevulnerableBuffer Overflow vulnerability in the net/bootp.c in DENEX U-Boot from ...
CVE-2022-34835vulnerablevulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedIn Das U-Boot through 2022.07-rc5, an integer signedness error and res ...
CVE-2022-33967fixedfixedfixedvulnerable (no DSA)fixedfixedfixedsquashfs filesystem implementation of U-Boot versions from v2020.10-rc ...
CVE-2022-33103fixedfixedfixedvulnerable (no DSA)fixedfixedfixedDas U-Boot from v2020.10 to v2022.07-rc3 was discovered to contain an ...
CVE-2022-30790vulnerablevulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedDas U-Boot 2022.01 has a Buffer Overflow, a different issue than CVE-2 ...
CVE-2022-30767fixedfixedfixedvulnerable (no DSA, ignored)fixedfixedfixednfs_lookup_reply in net/nfs.c in Das U-Boot through 2022.04 (and throu ...
CVE-2022-30552vulnerablevulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedDas U-Boot 2022.01 has a Buffer Overflow.
CVE-2022-2347vulnerablevulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedThere exists an unchecked length field in UBoot. The U-Boot DFU implem ...
CVE-2021-27138vulnerablevulnerable (no DSA, postponed)vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedThe boot loader in Das U-Boot before 2021.04-rc2 mishandles use of uni ...
CVE-2021-27097vulnerablevulnerable (no DSA, postponed)vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedThe boot loader in Das U-Boot before 2021.04-rc2 mishandles a modified ...
CVE-2020-10648vulnerable (no DSA, ignored)vulnerable (no DSA)vulnerable (no DSA, ignored)fixedfixedfixedfixedDas U-Boot through 2020.01 allows attackers to bypass verified boot re ...
CVE-2020-8432vulnerable (no DSA, ignored)vulnerable (no DSA)vulnerable (no DSA, ignored)fixedfixedfixedfixedIn Das U-Boot through 2020.01, a double free has been found in the cmd ...
CVE-2019-14204vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA, ignored)fixedfixedfixedfixedAn issue was discovered in Das U-Boot through 2019.07. There is a stac ...
CVE-2019-14203vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA, ignored)fixedfixedfixedfixedAn issue was discovered in Das U-Boot through 2019.07. There is a stac ...
CVE-2019-14202vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA, ignored)fixedfixedfixedfixedAn issue was discovered in Das U-Boot through 2019.07. There is a stac ...
CVE-2019-14201vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA, ignored)fixedfixedfixedfixedAn issue was discovered in Das U-Boot through 2019.07. There is a stac ...
CVE-2019-14200vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA, ignored)fixedfixedfixedfixedAn issue was discovered in Das U-Boot through 2019.07. There is a stac ...
CVE-2019-14199vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA, ignored)fixedfixedfixedfixedAn issue was discovered in Das U-Boot through 2019.07. There is an unb ...
CVE-2019-14198vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA, ignored)fixedfixedfixedfixedAn issue was discovered in Das U-Boot through 2019.07. There is an unb ...
CVE-2019-14197vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA, ignored)fixedfixedfixedfixedAn issue was discovered in Das U-Boot through 2019.07. There is a read ...
CVE-2019-14196vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA, ignored)fixedfixedfixedfixedAn issue was discovered in Das U-Boot through 2019.07. There is an unb ...
CVE-2019-14195vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA, ignored)fixedfixedfixedfixedAn issue was discovered in Das U-Boot through 2019.07. There is an unb ...
CVE-2019-14194vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA, ignored)fixedfixedfixedfixedAn issue was discovered in Das U-Boot through 2019.07. There is an unb ...
CVE-2019-14193vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA, ignored)fixedfixedfixedfixedAn issue was discovered in Das U-Boot through 2019.07. There is an unb ...
CVE-2019-14192vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA, ignored)fixedfixedfixedfixedAn issue was discovered in Das U-Boot through 2019.07. There is an unb ...
CVE-2019-13106vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA, ignored)fixedfixedfixedfixedDas U-Boot versions 2016.09 through 2019.07-rc4 can memset() too much ...
CVE-2019-13105vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA, ignored)fixedfixedfixedfixedDas U-Boot versions 2019.07-rc1 through 2019.07-rc4 can double-free a ...
CVE-2019-13104vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA, ignored)fixedfixedfixedfixedIn Das U-Boot versions 2016.11-rc1 through 2019.07-rc4, an underflow c ...
CVE-2019-13103vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA, ignored)fixedfixedfixedfixedA crafted self-referential DOS partition table will cause all Das U-Bo ...
CVE-2019-11690vulnerable (no DSA, ignored)vulnerable (no DSA)fixedfixedfixedfixedfixedgen_rand_uuid in lib/uuid.c in Das U-Boot v2014.04 through v2019.04 la ...
CVE-2019-11059vulnerable (no DSA, ignored)vulnerable (no DSA)fixedfixedfixedfixedfixedDas U-Boot 2016.11-rc1 through 2019.04 mishandles the ext4 64-bit exte ...

Open unimportant issues

BugjessiestretchbusterbullseyebookwormtrixiesidDescription
CVE-2018-1000205vulnerablevulnerablevulnerablevulnerablevulnerablevulnerablevulnerableU-Boot contains a CWE-20: Improper Input Validation vulnerability in V ...
CVE-2018-18440vulnerablevulnerablevulnerablevulnerablevulnerablevulnerablevulnerableDENX U-Boot through 2018.09-rc1 has a locally exploitable buffer overf ...
CVE-2018-18439vulnerablevulnerablevulnerablevulnerablevulnerablevulnerablevulnerableDENX U-Boot through 2018.09-rc1 has a remotely exploitable buffer over ...
CVE-2017-3226vulnerablevulnerablevulnerablevulnerablevulnerablevulnerablevulnerableDas U-Boot is a device bootloader that can read its configuration from ...
CVE-2017-3225vulnerablevulnerablevulnerablevulnerablevulnerablevulnerablevulnerableDas U-Boot is a device bootloader that can read its configuration from ...

Resolved issues

BugDescription
CVE-2018-3968An exploitable vulnerability exists in the verified boot protection of ...

Search for package or bug name: Reporting problems