VYPR

U-Boot SPL

by Nxp

CVEs (1)

  • CVE-2023-39902Oct 17, 2023
    risk 0.00cvss epss 0.00

    A software vulnerability has been identified in the U-Boot Secondary Program Loader (SPL) before 2023.07 on select NXP i.MX 8M family processors. Under certain conditions, a crafted Flattened Image Tree (FIT) format structure can be used to overwrite SPL memory, allowing…