Loading
U-Boot contains a CWE-20: Improper Input Validation vulnerability in Verified boot signature validation that can result in Bypass verified boot. This attack appear to be exploitable via Specially crafted FIT image and special device memory functionality.
Cite this page
CVE-2018-1000205. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2018-1000205
Use CWE-20, Denx vendor hub and U-Boot product page to widen CVE-2018-1000205 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2026-33243, CVE-2024-42040 and CVE-2022-33967 for nearby disclosures in the same product family.