Vulnerabilities > Xilinx

DATE CVE VULNERABILITY TITLE RISK
2022-04-27 CVE-2022-23822 Incorrect Authorization vulnerability in Xilinx Zynq-7000 Firmware and Zynq-7000S Firmware
In this physical attack, an attacker may potentially exploit the Zynq-7000 SoC First Stage Boot Loader (FSBL) by bypassing authentication and loading a malicious image onto the device.
low complexity
xilinx CWE-863
6.8
2021-03-15 CVE-2021-27208 Classic Buffer Overflow vulnerability in Xilinx Zynq-7000 Firmware and Zynq-7000S Firmware
When booting a Zync-7000 SOC device from nand flash memory, the nand driver in the ROM does not validate the inputs when reading in any parameters in the nand’s parameter page.
low complexity
xilinx CWE-120
6.8
2019-09-03 CVE-2019-5478 Insufficient Verification of Data Authenticity vulnerability in Xilinx products
A weakness was found in Encrypt Only boot mode in Zynq UltraScale+ devices.
local
low complexity
xilinx CWE-345
5.5