CVE-2019-14193 PUBLISHED

An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy with an unvalidated length at nfs_readlink_reply, in the "if" block after calculating the new path length.

EPSS 0.50% · 65.8th percentile

Risk Scores

EPSS Score
0.50%
65.8th percentile

Affected Products

VendorProductVersions
Ubuntu:20.04:LTSu-boot0, 2021.01+dfsg-3ubuntu0~20.04.1, 2020.10+dfsg-1ubuntu0~20.04.2
Ubuntu:18.04:LTSu-boot0, 2016.03+dfsg1-6ubuntu2, 2018.07~rc3+dfsg1-0ubuntu1~18.04.1
Ubuntu:16.04:LTSu-boot2016.01+dfsg1-1, 2015.10+dfsg1-4, 2015.10+dfsg1-3

Timeline

References

Open in Interactive Console →