Das U-Boot versions 2016.09 through 2019.07-rc4 can memset() too much data while reading a crafted ext4 filesystem, which results in a stack buffer overflow and likely code execution.
{
"versions": [
{
"introduced": "2016.09"
},
{
"last_affected": "2019.04"
},
{
"introduced": "0"
},
{
"last_affected": "2019.07-NA"
},
{
"introduced": "0"
},
{
"last_affected": "2019.07-rc1"
},
{
"introduced": "0"
},
{
"last_affected": "2019.07-rc2"
},
{
"introduced": "0"
},
{
"last_affected": "2019.07-rc3"
},
{
"introduced": "0"
},
{
"last_affected": "2019.07-rc4"
}
]
}