First published: Tue Feb 18 2025(Updated: )
Integer overflows in memory allocation in Das U-Boot before 2025.01-rc1 occur for a crafted squashfs filesystem via sbrk, via request2size, or because ptrdiff_t is mishandled on x86_64.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Das U-Boot | <2025.01-rc1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-57258 is considered a high severity vulnerability due to the potential for integer overflows leading to memory allocation issues.
To fix CVE-2024-57258, upgrade Das U-Boot to version 2025.01-rc1 or later where the vulnerability has been addressed.
CVE-2024-57258 affects versions of Das U-Boot prior to 2025.01-rc1 on x86_64 architecture.
Exploiting CVE-2024-57258 can lead to memory corruption issues which may allow an attacker to execute arbitrary code.
CVE-2024-57258 causes security issues by mishandling ptrdiff_t during memory allocation, resulting in integer overflows.