CVE-2019-11059: Denx U-Boot

Critical severity, CVSS 9.8. EPSS: 1.9% chance of exploitation in the next 30 days.

Das U-Boot 2016.11-rc1 through 2019.04 mishandles the ext4 64-bit extension, resulting in a buffer overflow.

Affected products

  • Denx U-Boot: from 2016.11, up to and including 2019.04; version 2016.11 only

Published 2019-05-10. Last modified 2026-06-17.