Vulnerabilities > Denx > U Boot > High

DATE CVE VULNERABILITY TITLE RISK
2019-07-29 CVE-2019-13103 Uncontrolled Recursion vulnerability in Denx U-Boot
A crafted self-referential DOS partition table will cause all Das U-Boot versions through 2019.07-rc4 to infinitely recurse, causing the stack to grow infinitely and eventually either crash or overwrite other data.
local
low complexity
denx CWE-674
7.1
2019-03-21 CVE-2018-3968 Improper Verification of Cryptographic Signature vulnerability in Denx U-Boot
An exploitable vulnerability exists in the verified boot protection of the Das U-Boot from version 2013.07-rc1 to 2014.07-rc2.
local
high complexity
denx CWE-347
7.0
2018-11-20 CVE-2018-18440 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Denx U-Boot
DENX U-Boot through 2018.09-rc1 has a locally exploitable buffer overflow via a crafted kernel image because filesystem loading is mishandled.
local
low complexity
denx CWE-119
7.8