CVE-2025-70293: Integer Overflow
Published Aug 26, 2026
·Updated
An issue was discovered in Denx U-Boot before 2026.04. An integer overflow vulnerability exists in function ext4fsgetbgdtable, the size calculation can lead to under allocation and this underallocated buffer will be used in memcpy() which could lead to arbitrary code execution, a denial of service, or other unspecified impacts.
Affected Software
1 affected component
DENX U-Boot<2026.04
Event History
Aug 26, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·08:16 PM
Description
Frequently Asked Questions
1
Which U-Boot versions fall within the affected range?
DENX U-Boot versions before 2026.04 are affected.