Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-36765

Опубликовано: 09 янв. 2024
Источник: redhat
CVSS3: 7

Описание

EDK2 is susceptible to a vulnerability in the CreateHob() function, allowing a user to trigger a integer overflow to buffer overflow via a local network. Successful exploitation of this vulnerability may result in a compromise of confidentiality, integrity, and/or availability.

A flaw was found in the CreateHob() function in EDK2. An attacker, leveraging a local network, can initiate an integer overflow leading to a buffer overflow. This issue arises during size alignment within the CreateHob() function, requiring activation in the PEI phase. Successful exploitation of this flaw poses a moderate threat to confidentiality and integrity, however, the primary consequence is likely a crash or denial of service.

Отчет

Red Hat has protection mechanisms in place against buffer overflows, such as FORTIFY_SOURCE, Position Independent Executables or Stack Smashing Protection.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-680
https://bugzilla.redhat.com/show_bug.cgi?id=2257584EDK2: integer overflow in CreateHob() could lead to HOB OOB R/W

7 High

CVSS3

Связанные уязвимости

CVSS3: 7
ubuntu
около 2 лет назад

EDK2 is susceptible to a vulnerability in the CreateHob() function, allowing a user to trigger a integer overflow to buffer overflow via a local network. Successful exploitation of this vulnerability may result in a compromise of confidentiality, integrity, and/or availability.

CVSS3: 7
nvd
около 2 лет назад

EDK2 is susceptible to a vulnerability in the CreateHob() function, allowing a user to trigger a integer overflow to buffer overflow via a local network. Successful exploitation of this vulnerability may result in a compromise of confidentiality, integrity, and/or availability.

CVSS3: 7.8
msrc
почти 2 года назад

Описание отсутствует

CVSS3: 7
debian
около 2 лет назад

EDK2 is susceptible to a vulnerability in the CreateHob() function, al ...

suse-cvrf
17 дней назад

Security update for ovmf

7 High

CVSS3