CVE-2019-5478

A weakness was found in Encrypt Only boot mode in Zynq UltraScale+ devices. This could lead to an adversary being able to modify the control fields of the boot image leading to an incorrect secure boot behavior.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
5.5 MEDIUM
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
hackeroneCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 5%
VendorProductVersion
amdzu11eg_firmware
-
amdzu15eg_firmware
-
amdzu17eg_firmware
-
amdzu19eg_firmware
-
amdzu1cg_firmware
-
amdzu1eg_firmware
-
amdzu21dr_firmware
-
amdzu25dr_firmware
-
amdzu27dr_firmware
-
amdzu28dr_firmware
-
amdzu29dr_firmware
-
amdzu2cg_firmware
-
amdzu2eg_firmware
-
amdzu39dr_firmware
-
amdzu3cg_firmware
-
amdzu3eg_firmware
-
amdzu3tcg_firmware
-
amdzu3teg_firmware
-
amdzu42dr_firmware
-
amdzu43dr_firmware
-
amdzu46dr_firmware
-
amdzu47dr_firmware
-
amdzu48dr_firmware
-
amdzu49dr_firmware
-
amdzu4cg_firmware
-
amdzu4eg_firmware
-
amdzu4ev_firmware
-
amdzu5cg_firmware
-
amdzu5eg_firmware
-
amdzu5ev_firmware
-
amdzu63dr_firmware
-
amdzu64dr_firmware
-
amdzu65dr_firmware
-
amdzu67dr_firmware
-
amdzu6cg_firmware
-
amdzu6eg_firmware
-
amdzu7cg_firmware
-
amdzu7eg_firmware
-
amdzu7ev_firmware
-
amdzu9cg_firmware
-
amdzu9eg_firmware
-
𝑥
= Vulnerable software versions