CVE-2025-45512
MEDIUMDENX U-Boot 1.1.3 - Arbitrary Code Execution via Unsigned Firmware Installation
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2025-45512. PoCs published by AzhariRamadhan.
AI-analyzed exploit summary This repository contains a Python-based PoC for CVE-2025-45512, targeting U-Boot 1.1.3. It demonstrates five vulnerabilities, including insecure update mechanisms, hardcoded sensitive values, and debugging interface access, via serial (UART) interaction.
Description
A lack of signature verification in the bootloader of DENX Software Engineering Das U-Boot (U-Boot) v1.1.3 allows attackers to install crafted firmware files, leading to arbitrary code execution.
Exploits (1)
This repository contains a Python-based PoC for CVE-2025-45512, targeting U-Boot 1.1.3. It demonstrates five vulnerabilities, including insecure update mechanisms, hardcoded sensitive values, and debugging interface access, via serial (UART) interaction.
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N