CVE-2026-71971: U-Boot
High severity, CVSS 8.2. EPSS: 0.4% chance of exploitation in the next 30 days.
U-Boot before 2026.10-rc3 with CONFIG_IP_DEFRAG enabled contains an out-of-bounds write vulnerability in the __net_defragment() function in net/net.c. Remote attackers can send a crafted IP fragment with non-zero offset and More-Fragments flag set during netboot to corrupt adjacent memory and crash the bootloader.
Affected products
- U-Boot U-Boot: before 2026.10-rc3 (fixed in 2026.10-rc3)
Published 2026-09-29. Last modified 2026-09-30.