DENX U-Boot through 2018.09-rc1 has a locally exploitable buffer overflow via a crafted kernel image because filesystem loading is mishandled.
{
"versions": [
{
"introduced": "0"
},
{
"last_affected": "2018.07"
},
{
"introduced": "0"
},
{
"last_affected": "2018.09-rc1"
}
]
}