Known vulnerabilities in DENX Universal Boot Loader (U-Boot)

Vendor: DENX
Website: https://www.denx.de
Total Security Bulletins: 19

Security bulletins (19)

Secuity bulletin Severity Status Published
SB2025122301: Arbitrary code execution in Denx Universal Boot Loader (U-Boot) Low
Patched
23.12.2025
SB2025030430: Multiple vulnerabilities in U-Boot Low
Patched
04.03.2025
SB2022120643: Arbitrary code execution in U-Boot DFU implementation Low
Patched
06.12.2022
SB2022082305: Privilege escalation in U-Boot Low
Patched
23.08.2022
SB2022081749: Privilege escalation in U-Boot Low
Patched
17.08.2022
SB2022071501: Heap-based buffer overflow in U-Boot Low
Patched
15.07.2022
SB2022061559: Remote code execution in U-Boot High
Patched
15.06.2022
SB2022060915: Multiple vulnerabilities in DENX U-Boot Medium
Patched
09.06.2022
SB2020031938: Input validation error in DENX U-Boot Low
Patched
19.03.2020
SB2019080642: Double Free in DENX U-Boot Critical
Patched
06.08.2019
SB2019080643: Stack-based buffer overflow in DENX U-Boot Critical
Patched
06.08.2019
SB2019080654: Buffer overflow in DENX U-Boot High
Patched
06.08.2019
SB2019073118: Remote code execution in U-Boot High
Patched
31.07.2019
SB2019072925: Resource management error in DENX U-Boot High
Patched
29.07.2019
SB2019051013: Buffer overflow in DENX U-Boot High
Patched
10.05.2019
SB2019032130: Improper Verification of Cryptographic Signature in DENX U-Boot Low
Patched
21.03.2019
SB2018110702: Remote code execution vulnerabilities in DENX U-Boot High
Patched
07.11.2018
SB2018072408: Multiple vulnerabilities in DENX U-Boot Medium
Patched
24.07.2018
SB2018062622: Input validation error in DENX U-Boot Medium
Patched
26.06.2018