Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-36764

Опубликовано: 09 янв. 2024
Источник: redhat
CVSS3: 7
EPSS Низкий

Описание

EDK2 is susceptible to a vulnerability in the Tcg2MeasurePeImage() function, allowing a user to trigger a heap buffer overflow via a local network. Successful exploitation of this vulnerability may result in a compromise of confidentiality, integrity, and/or availability.

A heap-based buffer overflow flaw was found via the Tcg2MeasurePeImage() function in EDK2. Successful exploitation requires a local attacker to trigger an integer overflow in the calculation of the EventSize variable at DxeTpm2MeasureBootLib.c, leading to the heap-buffer overflow, presenting a moderate risk to confidentiality and integrity. However, the primary consequence is likely a crash or denial of service.

Отчет

Red Hat has protection mechanisms in place against buffer overflows, such as FORTIFY_SOURCE, Position Independent Executables or Stack Smashing Protection.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-680
https://bugzilla.redhat.com/show_bug.cgi?id=2257583EDK2: heap buffer overflow in Tcg2MeasurePeImage()

EPSS

Процентиль: 9%
0.00036
Низкий

7 High

CVSS3

Связанные уязвимости

CVSS3: 7
ubuntu
больше 1 года назад

EDK2 is susceptible to a vulnerability in the Tcg2MeasurePeImage() function, allowing a user to trigger a heap buffer overflow via a local network. Successful exploitation of this vulnerability may result in a compromise of confidentiality, integrity, and/or availability.

CVSS3: 7
nvd
больше 1 года назад

EDK2 is susceptible to a vulnerability in the Tcg2MeasurePeImage() function, allowing a user to trigger a heap buffer overflow via a local network. Successful exploitation of this vulnerability may result in a compromise of confidentiality, integrity, and/or availability.

CVSS3: 7.8
msrc
больше 1 года назад

Описание отсутствует

CVSS3: 7
debian
больше 1 года назад

EDK2 is susceptible to a vulnerability in the Tcg2MeasurePeImage() fun ...

CVSS3: 7.8
fstec
больше 1 года назад

Уязвимость функции tcg2measurepeimage() библиотеки Tianocore EDK2 , вызванная переполнением буфера, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 9%
0.00036
Низкий

7 High

CVSS3