In ffu_flash_pack of ffu.c, there is a possible out of...
Moderate severity
Unreviewed
Published
Oct 25, 2024
to the GitHub Advisory Database
•
Updated Oct 28, 2024
Description
Published by the National Vulnerability Database
Oct 25, 2024
Published to the GitHub Advisory Database
Oct 25, 2024
Last updated
Oct 28, 2024
In ffu_flash_pack of ffu.c, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.
References