CVE-2024-6564
CVE-2024-6564
Título es
CVE-2024-6564
Lun, 08/07/2024 – 16:15
Tipo
CWE-120
Gravedad 2.0 Txt
Pendiente de análisis
Título en
CVE-2024-6564
Descripción en
Buffer overflow in "rcar_dev_init" due to using due to using untrusted data (rcar_image_number) as a loop counter before verifying it against RCAR_MAX_BL3X_IMAGE. This could lead to a full bypass of secure boot.
08/07/2024
08/07/2024
Vector CVSS:3.1
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Gravedad 3.1 (CVSS 3.1 Base Score)
6.70
Gravedad 3.1 Txt Gravedad 3.1 (CVSS 3.1 Base Score)
MEDIUM
Referencias
Enviar en el boletín
Off