Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-38798

Опубликовано: 09 дек. 2025
Источник: debian
EPSS Низкий

Описание

EDK2 contains a vulnerability in BIOS where an attacker may cause “Exposure of Sensitive Information to an Unauthorized Actor” by local access. Successful exploitation of this vulnerability will lead to possible information disclosure or escalation of privilege and impact Confidentiality.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
edk2fixed2025.11-1package
edk2no-dsatrixiepackage
edk2no-dsabookwormpackage

Примечания

  • https://github.com/tianocore/edk2/security/advisories/GHSA-q2c6-37h5-7cwf

  • Fixed by: https://github.com/tianocore/edk2/commit/0cad130cb4885961da201bb9b08424b3fd3d2249 (edk2-stable202511)

EPSS

Процентиль: 5%
0.00023
Низкий

Связанные уязвимости

ubuntu
2 месяца назад

EDK2 contains a vulnerability in BIOS where an attacker may cause “Exposure of Sensitive Information to an Unauthorized Actor” by local access. Successful exploitation of this vulnerability will lead to possible information disclosure or escalation of privilege and impact Confidentiality.

nvd
2 месяца назад

EDK2 contains a vulnerability in BIOS where an attacker may cause “Exposure of Sensitive Information to an Unauthorized Actor” by local access. Successful exploitation of this vulnerability will lead to possible information disclosure or escalation of privilege and impact Confidentiality.

github
2 месяца назад

EDK2 contains a vulnerability in BIOS where an attacker may cause “Exposure of Sensitive Information to an Unauthorized Actor” by local access. Successful exploitation of this vulnerability will lead to possible information disclosure or escalation of privilege and impact Confidentiality.

EPSS

Процентиль: 5%
0.00023
Низкий