CVE-2019-14196: Critical severity DENX U-Boot vulnerability
Published Jul 31, 2019
·Updated
An issue was discovered in Das U-Boot through 2019.07. There is an unbounded memcpy with a failed length check at nfslookupreply.
Affected Software
1 affected component
DENX U-Boot<=2019.07
Event History
Jul 31, 2019
CVE Published
via MITRE·12:30 PM
Data Sourced
via MITRE·12:30 PM
Description
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeaknessAffected Software
Sep 4, 2025
Data Sourced
via Microsoft·02:36 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-14196?
The severity of CVE-2019-14196 is critical.
2
How does CVE-2019-14196 affect Das U-Boot?
CVE-2019-14196 affects Das U-Boot up to version 2019.07.
3
What is the impact of CVE-2019-14196?
CVE-2019-14196 allows an attacker to perform remote code execution.
4
How do I fix CVE-2019-14196?
To fix CVE-2019-14196, it is recommended to update Das U-Boot to a patched version.
5
Where can I find more information about CVE-2019-14196?
You can find more information about CVE-2019-14196 in the references provided: https://blog.semmle.com/uboot-rce-nfs-vulnerability/ and https://gitlab.com/u-boot/u-boot.