Firmware Verification Flaw in iSTAR Ultra by iSTAR Networking
CVE-2025-53696
9.3CRITICAL
What is CVE-2025-53696?
The iSTAR Ultra firmware verification process at boot time lacks thorough inspection, omitting crucial sections of the firmware that could harbor malicious code. This oversight potentially compromises the integrity of the system, allowing for unauthorized code execution. The vulnerability has been tested up to firmware version 6.9.2, with subsequent versions possibly affected, highlighting the need for stringent security measures in firmware validation.
Affected Version(s)
iSTAR Ultra Linux 0 <= 6.9.2