CVE-2025-41697

An attacker can use an undocumented UART port on the PCB as a side-channel to get root access e.g. with the credentials obtained from CVE-2025-41692.

Credits

D. Blagojevic, S. Dietz, F. Koroknai, T. Weber from CyberDanube

References