CVE-2021-25435: Input Validation
Published Jul 8, 2021
·Updated
Improper input validation vulnerability in Tizen bootloader prior to Firmware update JUL-2021 Release allows arbitrary code execution using recovery partition in wireless firmware download mode.
Affected Software
1 affected component
Linux Tizen<5.5
Event History
Jul 8, 2021
CVE Published
via MITRE·01:46 PM
Data Sourced
via MITRE·01:46 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-25435?
CVE-2021-25435 is classified as a high severity vulnerability due to its potential for arbitrary code execution.
2
How do I fix CVE-2021-25435?
To fix CVE-2021-25435, update the Tizen firmware to a version released after July 2021.
3
What type of systems are affected by CVE-2021-25435?
CVE-2021-25435 affects Tizen operating systems up to version 5.5.
4
What could be the consequences of exploiting CVE-2021-25435?
Exploiting CVE-2021-25435 could allow an attacker to execute arbitrary code on the affected Tizen device.
5
Is a workaround available for CVE-2021-25435?
There are no known workarounds for CVE-2021-25435; the only mitigation is to apply the firmware update.