Vulnerabilities > Linuxfoundation > Yocto

DATE CVE VULNERABILITY TITLE RISK
2025-02-03 CVE-2025-20635 Out-of-bounds Write vulnerability in multiple products
In V6 DA, there is a possible out of bounds write due to a missing bounds check.
6.6
2024-09-02 CVE-2024-20084 Out-of-bounds Read vulnerability in multiple products
In power, there is a possible out of bounds read due to a missing bounds check.
4.4
2024-09-02 CVE-2024-20085 Out-of-bounds Read vulnerability in multiple products
In power, there is a possible out of bounds read due to a missing bounds check.
4.4
2024-09-02 CVE-2024-20089 Improper Check for Unusual or Exceptional Conditions vulnerability in multiple products
In wlan, there is a possible denial of service due to incorrect error handling.
network
low complexity
linuxfoundation rdkcentral google CWE-754
7.5
2024-07-01 CVE-2024-20081 Out-of-bounds Write vulnerability in multiple products
In gnss service, there is a possible out of bounds write due to improper input validation.
6.7
2024-03-04 CVE-2024-20022 In lk, there is a possible escalation of privilege due to a missing bounds check.
local
low complexity
linuxfoundation rdkcentral google openwrt
6.7
2024-02-19 CVE-2024-25626 OS Command Injection vulnerability in Linuxfoundation Yocto
Yocto Project is an open source collaboration project that helps developers create custom Linux-based systems regardless of the hardware architecture.
network
low complexity
linuxfoundation CWE-78
critical
9.8
2023-12-04 CVE-2023-32855 Missing Authorization vulnerability in multiple products
In aee, there is a possible escalation of privilege due to a missing permission check.
6.7
2023-10-02 CVE-2023-32820 Reachable Assertion vulnerability in multiple products
In wlan firmware, there is a possible firmware assertion due to improper input handling.
network
low complexity
linuxfoundation mediatek google linux CWE-617
7.5
2023-10-02 CVE-2023-32829 Integer Overflow or Wraparound vulnerability in multiple products
In apusys, there is a possible out of bounds write due to an integer overflow.
local
low complexity
linuxfoundation mediatek google CWE-190
6.7