Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2024:11185

Опубликовано: 24 июн. 2025
Источник: rocky
Оценка: Moderate

Описание

Moderate: edk2:20220126gitbb1bba3d77 security update

EDK (Embedded Development Kit) is a project to enable UEFI support for Virtual Machines. This package contains a sample 64-bit UEFI firmware for QEMU and KVM.

Security Fix(es):

  • edk2: Integer overflows in PeCoffLoaderRelocateImage (CVE-2024-38796)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
edk2-ovmfnoarch13.el8_10.4edk2-ovmf-20220126gitbb1bba3d77-13.el8_10.4.noarch.rpm

Показывать по

Связанные CVE

Исправления

Связанные уязвимости

CVSS3: 5.9
ubuntu
11 месяцев назад

EDK2 contains a vulnerability in the PeCoffLoaderRelocateImage(). An Attacker may cause memory corruption due to an overflow via an adjacent network. A successful exploit of this vulnerability may lead to a loss of Confidentiality, Integrity, and/or Availability.

CVSS3: 5.9
redhat
11 месяцев назад

EDK2 contains a vulnerability in the PeCoffLoaderRelocateImage(). An Attacker may cause memory corruption due to an overflow via an adjacent network. A successful exploit of this vulnerability may lead to a loss of Confidentiality, Integrity, and/or Availability.

CVSS3: 5.9
nvd
11 месяцев назад

EDK2 contains a vulnerability in the PeCoffLoaderRelocateImage(). An Attacker may cause memory corruption due to an overflow via an adjacent network. A successful exploit of this vulnerability may lead to a loss of Confidentiality, Integrity, and/or Availability.

CVSS3: 5.9
msrc
3 месяца назад

Описание отсутствует

CVSS3: 5.9
debian
11 месяцев назад

EDK2 contains a vulnerability in the PeCoffLoaderRelocateImage(). An A ...