CVE-2025-45512: Denx U-Boot

Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.

A lack of signature verification in the bootloader of DENX Software Engineering Das U-Boot (U-Boot) v1.1.3 allows attackers to install crafted firmware files, leading to arbitrary code execution.

Affected products

  • Denx U-Boot: version 1.1.3 only

Published 2025-08-05. Last modified 2026-06-17.