VYPR

Little Kernel (LK) bootloader

by Qualcomm

CVEs (2)

  • CVE-2013-2598Aug 31, 2014
    risk 0.00cvss epss 0.00

    app/aboot/aboot.c in the Little Kernel (LK) bootloader, as distributed with Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allows attackers to overwrite signature-verification code via crafted boot-image load-destination header values…

  • CVE-2014-0974Aug 25, 2014
    risk 0.00cvss epss 0.00

    The boot_linux_from_mmc function in app/aboot/aboot.c in the Little Kernel (LK) bootloader, as distributed with Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, does not properly validate a certain address value, which allows attackers…