CVE-2020-10648
19.03.2020, 14:15
Das U-Boot through 2020.01 allows attackers to bypass verified boot restrictions and subsequently boot arbitrary images by providing a crafted FIT image to a system configured to boot the default configuration.Enginsight
| Vendor | Product | Version |
|---|---|---|
| denx | u-boot | 𝑥 < 2018.03 |
| denx | u-boot | 2020.01 |
| opensuse | leap | 15.2 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| u-boot |
|
Common Weakness Enumeration
References