Skip to finding
important · Boot chain — Zynq

A malicious USB host can overflow enabled Zynq UltraScale+ USB boot into first-stage-loader memory.

Affects

AMD Zynq UltraScale+ MPSoCs, Zynq UltraScale+ RFSoCs, and Kria system-on-modules using the optional USB boot implementation.

The route is limited to builds that include and enable USB boot. Excessive DFU download requests then overflow the DDR receive buffer into FSBL memory.

Detail and 2 sources

Unauthorized preboot execution remains potential; controlled instruction flow has not been demonstrated in the available record.

Share this finding
Get it by email

The same brief, every morning. One email a day, nothing else.

Every finding here carries a source that was checked before it published. If something is wrong, write to admin@fullchain.sh — corrections are published on the day they affect.

Friday, September 25, 2026