Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2019-14563

Опубликовано: 05 фев. 2020
Источник: redhat
CVSS3: 6.4
EPSS Низкий

Описание

Integer truncation in EDK II may allow an authenticated user to potentially enable escalation of privilege via local access.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 7ovmfWill not fix
Red Hat Enterprise Linux 8edk2FixedRHSA-2020:171228.04.2020

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-190
https://bugzilla.redhat.com/show_bug.cgi?id=1758620edk2: numeric truncation in MdeModulePkg/PiDxeS3BootScriptLib

EPSS

Процентиль: 33%
0.004
Низкий

6.4 Medium

CVSS3

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 5 лет назад

Integer truncation in EDK II may allow an authenticated user to potentially enable escalation of privilege via local access.

CVSS3: 7.8
nvd
больше 5 лет назад

Integer truncation in EDK II may allow an authenticated user to potentially enable escalation of privilege via local access.

CVSS3: 7.8
debian
больше 5 лет назад

Integer truncation in EDK II may allow an authenticated user to potent ...

github
около 4 лет назад

Integer truncation in EDK II may allow an authenticated user to potentially enable escalation of privilege via local access.

oracle-oval
больше 6 лет назад

ELSA-2020-1712: edk2 security, bug fix, and enhancement update (MODERATE)

EPSS

Процентиль: 33%
0.004
Низкий

6.4 Medium

CVSS3