Security Advisory

CVE-2025-70293

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-08-26 00:00:00
Last updated 2026-09-01 18:25:43
Assigner mitre
CVSS score 9.8
State PUBLISHED

Description

An issue was discovered in Denx U-Boot before 2026.04. An integer overflow vulnerability exists in function ext4fs_get_bgdtable, the size calculation can lead to under allocation and this underallocated buffer will be used in memcpy() which could lead to arbitrary code execution, a denial of service, or other unspecified impacts.