Loading HuntDB...

GHSA-7r55-mp9r-c8pj

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

TOCTOU in the ASP Bootloader may allow an attacker with physical access to tamper with SPI ROM records after memory content verification, potentially leading to loss of confidentiality or a denial of service.

Related CVEs

Key Information

GHSA ID
GHSA-7r55-mp9r-c8pj
Published
November 14, 2023 9:31 PM
Last Modified
February 13, 2024 9:30 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: July 3, 2025 6:26 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.