Skip to main content

Vendor/product archive

linux4sam / at91bootstrap CVEs

Beta · best-effort

2 CVEs tagged to linux4sam / at91bootstrap1 Critical, 0 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2020-11684

Published Sep 14, 2020

AT91bootstrap before 3.9.2 does not properly wipe encryption and authentication keys from memory before passing control to a less privileged software component. This can be exploi…

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort

CVE-2020-11683

Published Sep 14, 2020

A timing side channel was discovered in AT91bootstrap before 3.9.2. It can be exploited by attackers with physical access to forge CMAC values and subsequently boot arbitrary code…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1