Linux4sam's vulnerability footprint centers on the AT91Bootstrap bootloader, a focused firmware component used in embedded systems and microcontroller platforms. The recurring exposure involves improper handling of sensitive information and observable discrepancies in data management, issues characteristic of low-level boot and storage code. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Linux4sam over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-11684CRITICAL AT91bootstrap before 3.9.2 does not properly wipe encryption and authentication keys from memory before passing control to a less privileged software component. This can be exploit | Sep 14, 2020 | 9.1 | 22 | NO | NO |
CVE-2020-11683MEDIUM A timing side channel was discovered in AT91bootstrap before 3.9.2. It can be exploited by attackers with physical access to forge CMAC values and subsequently boot arbitrary code | Sep 14, 2020 | 6.8 | 18 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Linux4sam.
Media articles that mention a CVE ID that affects a product developed by Linux4sam — matched by CVE ID, not by vendor name.