In BootROM, there is a missing size check for RSA keys in Certificate Type 0 validation. This could lead to memory buffer overflow without requiring additional execution privileges.
Metrics
Affected Vendors & Products
References
History
Tue, 02 Sep 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-119 | |
| Metrics |
cvssV3_1
|
Mon, 01 Sep 2025 07:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In BootROM, there is a missing size check for RSA keys in Certificate Type 0 validation. This could lead to memory buffer overflow without requiring additional execution privileges. | |
| References |
|
Status: PUBLISHED
Assigner: Unisoc
Published: 2025-09-01T07:28:11.880Z
Updated: 2025-09-02T13:47:08.245Z
Reserved: 2022-08-22T20:26:49.656Z
Link: CVE-2022-38692
Updated: 2025-09-02T13:45:58.963Z
Status : Awaiting Analysis
Published: 2025-09-01T08:15:31.973
Modified: 2025-09-02T15:55:25.420
Link: CVE-2022-38692
No data.