Security Advisory

CVE-2024-57255

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-02-18 00:00:00
Last updated 2025-11-03 19:32:36
Assigner mitre
State PUBLISHED

Description

An integer overflow in sqfs_resolve_symlink in Das U-Boot before 2025.01-rc1 occurs via a crafted squashfs filesystem with an inode size of 0xffffffff, resulting in a malloc of zero and resultant memory overwrite.