CVE-2022-34835
30.06.2022, 00:15
In Das U-Boot through 2022.07-rc5, an integer signedness error and resultant stack-based buffer overflow in the "i2c md" command enables the corruption of the return address pointer of the do_i2c_md function.Enginsight
| Vendor | Product | Version |
|---|---|---|
| denx | u-boot | 𝑥 < 2022.07 |
| denx | u-boot | 2022.07:rc1 |
| denx | u-boot | 2022.07:rc2 |
| denx | u-boot | 2022.07:rc3 |
| denx | u-boot | 2022.07:rc4 |
| denx | u-boot | 2022.07:rc5 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References