CVE-2025-70293

An issue was discovered in Denx U-Boot before 2026.04. An integer overflow vulnerability exists in function ext4fs_get_bgdtable, the size calculation can lead to under allocation and this underallocated buffer will be used in memcpy() which could lead to arbitrary code execution, a denial of service, or other unspecified impacts.
Configurations

No configuration.

History

No history.

Information

Published : 2026-08-26 20:16

Updated : 2026-09-09 16:04


NVD link : CVE-2025-70293

Mitre link : CVE-2025-70293

CVE.ORG link : CVE-2025-70293


JSON object : View

Products Affected

No product.

CWE
CWE-122

Heap-based Buffer Overflow

CWE-190

Integer Overflow or Wraparound