important · Boot chain — Zynq
A malicious USB host can overflow enabled Zynq UltraScale+ USB boot into first-stage-loader memory.
Affects
AMD Zynq UltraScale+ MPSoCs, Zynq UltraScale+ RFSoCs, and Kria system-on-modules using the optional USB boot implementation.
The route is limited to builds that include and enable USB boot. Excessive DFU download requests then overflow the DDR receive buffer into FSBL memory.
Detail and 2 sources
Unauthorized preboot execution remains potential; controlled instruction flow has not been demonstrated in the available record.