CVE-2019-13103

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
29/07/2019
Last modified:
24/08/2020

Description

A crafted self-referential DOS partition table will cause all Das U-Boot versions through 2019.07-rc4 to infinitely recurse, causing the stack to grow infinitely and eventually either crash or overwrite other data.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:denx:u-boot:*:*:*:*:*:*:*:* 2019.04 (excluding)
cpe:2.3:a:denx:u-boot:2019.04:-:*:*:*:*:*:*
cpe:2.3:a:denx:u-boot:2019.04:rc1:*:*:*:*:*:*
cpe:2.3:a:denx:u-boot:2019.04:rc2:*:*:*:*:*:*
cpe:2.3:a:denx:u-boot:2019.04:rc3:*:*:*:*:*:*
cpe:2.3:a:denx:u-boot:2019.04:rc4:*:*:*:*:*:*
cpe:2.3:a:denx:u-boot:2019.07:rc1:*:*:*:*:*:*
cpe:2.3:a:denx:u-boot:2019.07:rc2:*:*:*:*:*:*
cpe:2.3:a:denx:u-boot:2019.07:rc3:*:*:*:*:*:*
cpe:2.3:a:denx:u-boot:2019.07:rc4:*:*:*:*:*:*