Security Advisory

CVE-2024-57255

7.1
HIGH

Vulnerability Description

An integer overflow in sqfs_resolve_symlink in Das U-Boot before 2025.01-rc1 occurs via a crafted squashfs filesystem with an inode size of 0xffffffff, resulting in a malloc of zero and resultant memory overwrite.
Published Date February 18, 2025
Official Source NIST NVD Advisory