Description

Buffer Overflow vulnerability in the net/bootp.c in DENEX U-Boot from its initial commit in 2002 (3861aa5) up to today on any platform allows an attacker on the local network to leak memory from four up to 32 bytes of memory stored behind the packet to the network depending on the later use of DHCP-provided parameters via crafted DHCP responses.

INFO

Published Date :

2024-08-23T00:00:00.000Z

Last Modified :

2024-11-20T16:22:55.745Z

Source :

mitre
AFFECTED PRODUCTS

The following products are affected by CVE-2024-42040 vulnerability.

Vendors Products
Denx
  • U-boot
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2024-42040.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact