Security Advisory

CVE-2024-6564

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-07-08 15:18:17
Last updated 2024-08-01 21:41:03
Assigner ASRG
State PUBLISHED

Description

Buffer overflow in "rcar_dev_init" due to using due to using untrusted data (rcar_image_number) as a loop counter before verifying it against RCAR_MAX_BL3X_IMAGE. This could lead to a full bypass of secure boot.