{"id":"CVE-2022-33967","details":"squashfs filesystem implementation of U-Boot versions from v2020.10-rc2 to v2022.07-rc5 contains a heap-based buffer overflow vulnerability due to a defect in the metadata reading process. Loading a specially crafted squashfs image may lead to a denial-of-service (DoS) condition or arbitrary code execution.","modified":"2026-08-12T03:30:37.697935640Z","published":"2022-07-20T06:15:22Z","related":["SUSE-SU-2022:2653-1","SUSE-SU-2022:2661-1"],"database_specific":{"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/33xxx/CVE-2022-33967.json","unresolved_ranges":[{"extracted_events":[{"introduced":"versions from v2020.10-rc2 to v2022.07-rc5"},{"last_affected":"versions from v2020.10-rc2 to v2022.07-rc5"}],"source":"AFFECTED_FIELD"}],"cna_assigner":"jpcert"},"references":[{"type":"WEB","url":"https://jvn.jp/en/vu/JVNVU97846460/index.html"},{"type":"WEB","url":"https://lists.debian.org/debian-lts-announce/2025/05/msg00001.html"},{"type":"WEB","url":"https://lists.denx.de/pipermail/u-boot/2022-June/487467.html"},{"type":"WEB","url":"https://source.denx.de/u-boot/u-boot/-/commit/7f7fb9937c6cb49dd35153bd6708872b390b0a44"},{"type":"WEB","url":"https://www.denx.de/project/u-boot/"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/33xxx/CVE-2022-33967.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-33967"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/u-boot/u-boot","events":[{"introduced":"554e5514ac00f204282c4a2376ae65935d104e60"},{"last_affected":"568a226f87655fd5339514f66413c2ad72f65d6f"}],"database_specific":{"extracted_events":[{"introduced":"2020.10-rc2"},{"last_affected":"2020.10-rc2"},{"introduced":"2020.10-rc3"},{"last_affected":"2020.10-rc3"},{"introduced":"2020.10-rc4"},{"last_affected":"2020.10-rc4"},{"introduced":"2020.10-rc5"},{"last_affected":"2020.10-rc5"},{"introduced":"2021.01-NA"},{"last_affected":"2021.01-NA"},{"introduced":"2021.01-rc1"},{"last_affected":"2021.01-rc1"},{"introduced":"2021.01-rc2"},{"last_affected":"2021.01-rc2"},{"introduced":"2021.01-rc3"},{"last_affected":"2021.01-rc3"},{"introduced":"2021.01-rc4"},{"last_affected":"2021.01-rc4"},{"introduced":"2021.01-rc5"},{"last_affected":"2021.01-rc5"},{"introduced":"2021.04-rc1"},{"last_affected":"2021.04-rc1"},{"introduced":"2021.04-rc2"},{"last_affected":"2021.04-rc2"},{"introduced":"2022.01-NA"},{"last_affected":"2022.01-NA"},{"introduced":"2022.01-rc1"},{"last_affected":"2022.01-rc1"},{"introduced":"2022.01-rc2"},{"last_affected":"2022.01-rc2"},{"introduced":"2022.01-rc3"},{"last_affected":"2022.01-rc3"},{"introduced":"2022.01-rc4"},{"last_affected":"2022.01-rc4"},{"introduced":"2022.04-NA"},{"last_affected":"2022.04-NA"},{"introduced":"2022.04-rc1"},{"last_affected":"2022.04-rc1"},{"introduced":"2022.04-rc2"},{"last_affected":"2022.04-rc2"},{"introduced":"2022.04-rc3"},{"last_affected":"2022.04-rc3"},{"introduced":"2022.04-rc4"},{"last_affected":"2022.04-rc4"},{"introduced":"2022.04-rc5"},{"last_affected":"2022.04-rc5"},{"introduced":"2022.07-rc1"},{"last_affected":"2022.07-rc1"},{"introduced":"2022.07-rc2"},{"last_affected":"2022.07-rc2"},{"introduced":"2022.07-rc3"},{"last_affected":"2022.07-rc3"},{"introduced":"2022.07-rc4"},{"last_affected":"2022.07-rc4"},{"introduced":"2022.07-rc5"},{"last_affected":"2022.07-rc5"}],"source":"CPE_STRING","cpe":["cpe:2.3:a:denx:u-boot:2020.10:rc2:*:*:*:*:*:*","cpe:2.3:a:denx:u-boot:2020.10:rc3:*:*:*:*:*:*","cpe:2.3:a:denx:u-boot:2020.10:rc4:*:*:*:*:*:*","cpe:2.3:a:denx:u-boot:2020.10:rc5:*:*:*:*:*:*","cpe:2.3:a:denx:u-boot:2021.01:-:*:*:*:*:*:*","cpe:2.3:a:denx:u-boot:2021.01:rc1:*:*:*:*:*:*","cpe:2.3:a:denx:u-boot:2021.01:rc2:*:*:*:*:*:*","cpe:2.3:a:denx:u-boot:2021.01:rc3:*:*:*:*:*:*","cpe:2.3:a:denx:u-boot:2021.01:rc4:*:*:*:*:*:*","cpe:2.3:a:denx:u-boot:2021.01:rc5:*:*:*:*:*:*","cpe:2.3:a:denx:u-boot:2021.04:rc1:*:*:*:*:*:*","cpe:2.3:a:denx:u-boot:2021.04:rc2:*:*:*:*:*:*","cpe:2.3:a:denx:u-boot:2022.01:-:*:*:*:*:*:*","cpe:2.3:a:denx:u-boot:2022.01:rc1:*:*:*:*:*:*","cpe:2.3:a:denx:u-boot:2022.01:rc2:*:*:*:*:*:*","cpe:2.3:a:denx:u-boot:2022.01:rc3:*:*:*:*:*:*","cpe:2.3:a:denx:u-boot:2022.01:rc4:*:*:*:*:*:*","cpe:2.3:a:denx:u-boot:2022.04:-:*:*:*:*:*:*","cpe:2.3:a:denx:u-boot:2022.04:rc1:*:*:*:*:*:*","cpe:2.3:a:denx:u-boot:2022.04:rc2:*:*:*:*:*:*","cpe:2.3:a:denx:u-boot:2022.04:rc3:*:*:*:*:*:*","cpe:2.3:a:denx:u-boot:2022.04:rc4:*:*:*:*:*:*","cpe:2.3:a:denx:u-boot:2022.04:rc5:*:*:*:*:*:*","cpe:2.3:a:denx:u-boot:2022.07:rc1:*:*:*:*:*:*","cpe:2.3:a:denx:u-boot:2022.07:rc2:*:*:*:*:*:*","cpe:2.3:a:denx:u-boot:2022.07:rc3:*:*:*:*:*:*","cpe:2.3:a:denx:u-boot:2022.07:rc4:*:*:*:*:*:*","cpe:2.3:a:denx:u-boot:2022.07:rc5:*:*:*:*:*:*"]}}],"versions":["2020.10-rc2","2020.10-rc3","2020.10-rc4","2020.10-rc5","2021.01-NA","2021.01-rc1","2021.01-rc2","2021.01-rc3","2021.01-rc4","2021.01-rc5","2021.04-rc1","2021.04-rc2","2022.01-NA","2022.01-rc1","2022.01-rc2","2022.01-rc3","2022.01-rc4","2022.04-NA","2022.04-rc1","2022.04-rc2","2022.04-rc3","2022.04-rc4","2022.04-rc5","2022.07-rc1","2022.07-rc2","2022.07-rc3","2022.07-rc4","2022.07-rc5","v2022.07-rc5","v2022.07-rc4","v2022.07-rc3","v2022.07-rc2","v2022.07-rc1","v2022.04","v2022.04-rc5","v2022.04-rc4","v2022.04-rc3","v2022.04-rc2","v2022.04-rc1","v2022.01","v2022.01-rc3","v2022.01-rc4","v2022.01-rc2","v2022.01-rc1","v2021.10","v2021.10-rc5","v2021.10-rc4","v2021.10-rc3","v2021.10-rc2","v2021.10-rc1","v2021.07","v2021.07-rc5","v2021.07-rc4","v2021.07-rc3","v2021.07-rc2","v2021.07-rc1","v2021.04","v2021.04-rc5","v2021.04-rc4","v2021.04-rc3","v2021.04-rc2","v2021.04-rc1","v2021.01","v2021.01-rc4","v2021.01-rc5","v2021.01-rc3","v2021.01-rc2","v2021.01-rc1","v2020.10","v2020.10-rc5","v2020.10-rc4","v2020.10-rc3","v2020.10-rc2"],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-33967.json"}}],"schema_version":"1.9.0"}