Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2019-14560

Опубликовано: 28 фев. 2023
Источник: ubuntu
Приоритет: low

Описание

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2019. Notes: none.

РелизСтатусПримечание
bionic

not-affected

end of standard support, was deferred
devel

not-affected

2023-02-22
esm-apps/bionic

not-affected

2023-02-22
esm-apps/xenial

not-affected

2023-02-22
esm-infra-legacy/trusty

DNE

esm-infra/focal

not-affected

2023-02-22
focal

not-affected

end of standard support, was deferred [2023-02-22]
groovy

not-affected

end of life
hirsute

not-affected

end of life
impish

not-affected

end of life

Показывать по

Ссылки на источники

Связанные уязвимости

CVSS3: 6.1
redhat
около 5 лет назад

[REJECTED CVE] A secure boot bypass vulnerability was found in EDK2 due to the lack of proper return value checks in the GetEfiGlobalVariable2() function. The API may fail if functions like AllocatePool() or gRT->GetVariable() fail. Without verifying the return value, an attacker could cause the API to fail, potentially bypassing secure boot. This issue occurs in functions like DxeImageVerificationHandler, where the return value is not checked.

nvd
больше 2 лет назад

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2019. Notes: none.

oracle-oval
больше 1 года назад

ELSA-2023-6919: edk2 security and bug fix update (MODERATE)

suse-cvrf
около 2 лет назад

Security update for ovmf

suse-cvrf
больше 2 лет назад

Security update for ovmf