Multiple vulnerabilities in DENX U-Boot up to version 2026.04-rc3 (CVSS Base Score 7.1) allow a remote attacker from an adjacent network to execute arbitrary code and cause a denial of service. A mitigation is available, but the article does not specify a patched version or provide a specific workaround.
[WID-SEC-2026-2306] DENX U-Boot: Mehrere Schwachstellen CVSS Base Score 7.1 (hoch) CVSS Temporal Score 6.5 (mittel) Remoteangriff ja Datum 13.07.2026 Stand 14.07.2026 Mitigation ja Betroffene Systeme Betriebssystem Linux UNIX Produktbeschreibung U-Boot ist ein weit verbreiteter Open-Source-Bootloader. Produkte 13.07.2026 DENX U-Boot <=2026.04-rc3 Angriff Angriff Ein Angreifer aus einem angrenzenden Netzwerk kann mehrere Schwachstellen in DENX U-Boot ausnutzen, um einen Denial of Service Angriff durchzufĂŒhren und beliebigen Code auszufĂŒhren. CVE Informationen Versionshistorie Feedback zum Advisory geben