An issue was discovered in Das U-Boot through 2019.07. There is a read of out-of-bounds data at nfs_read_reply.
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://gitlab.com/u-boot/u-boot | third party advisory |
https://blog.semmle.com/uboot-rce-nfs-vulnerability/ | third party advisory |