CVE-2024-6564
EUVD-2024-4763608.07.2024, 16:15
Buffer overflow in "rcar_dev_init" due to using due to using untrusted data (rcar_image_number) as a loop counter before verifying it against RCAR_MAX_BL3X_IMAGE. This could lead to a full bypass of secure boot.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| renesas | arm-trusted-firmware | - |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| renesas | rcar_gen3_v2.5 | c2f286820471ed276c57e603762bd831873e5a17 ≤ 𝑥 ≤ c9fb3558410032d2660c7f3b7d4b87dec09fe2f2 | ADP |
Debian Releases
Ubuntu Releases