CyberRota Analysis
AI-GeneratedAn integer overflow vulnerability in the ZFS filesystem support of Denx U-Boot can be exploited through malformed on-disk metadata, leading to incorrect memory allocation and potential out-of-bounds memory access. This may result in system crashes or arbitrary code execution during the boot process. Organizations utilizing affected versions of Denx U-Boot should prioritize remediation to mitigate the risk of exploitation.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
An issue was discovered in Denx U-Boot before 2026.04. An integer overflow vulnerability in the ZFS filesystem support can be triggered by malformed on-disk metadata. The issue may result in incorrect memory allocation followed by out-of-bounds memory access, potentially leading to a crash or arbitrary code execution during the boot process.