Логотип exploitDog
bind:"CVE-2023-45236" OR bind:"CVE-2023-45237" OR bind:"CVE-2024-1298"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2023-45236" OR bind:"CVE-2023-45237" OR bind:"CVE-2024-1298"

Количество 37

Количество 37

fstec логотип

BDU:2024-00658

больше 1 года назад

Уязвимость компонента TCP Initial Sequence Number Handler библиотеки Tianocore EDK2, позволяющая нарушителю получить несанкционированный доступ к конфиденциальным данным

CVSS3: 5.3
EPSS: Низкий
redos логотип

ROS-20240625-06

12 месяцев назад

Множественные уязвимости edk2-tools

CVSS3: 8.3
EPSS: Низкий
ubuntu логотип

CVE-2024-1298

около 1 года назад

EDK2 contains a vulnerability when S3 sleep is activated where an Attacker may cause a Division-By-Zero due to a UNIT32 overflow via local access. A successful exploit of this vulnerability may lead to a loss of Availability.

CVSS3: 6
EPSS: Низкий
redhat логотип

CVE-2024-1298

около 1 года назад

EDK2 contains a vulnerability when S3 sleep is activated where an Attacker may cause a Division-By-Zero due to a UNIT32 overflow via local access. A successful exploit of this vulnerability may lead to a loss of Availability.

CVSS3: 6
EPSS: Низкий
nvd логотип

CVE-2024-1298

около 1 года назад

EDK2 contains a vulnerability when S3 sleep is activated where an Attacker may cause a Division-By-Zero due to a UNIT32 overflow via local access. A successful exploit of this vulnerability may lead to a loss of Availability.

CVSS3: 6
EPSS: Низкий
msrc логотип

CVE-2024-1298

около 1 года назад

CVSS3: 6
EPSS: Низкий
debian логотип

CVE-2024-1298

около 1 года назад

EDK2 contains a vulnerability when S3 sleep is activated where an Atta ...

CVSS3: 6
EPSS: Низкий
ubuntu логотип

CVE-2023-45237

больше 1 года назад

EDK2's Network Package is susceptible to a predictable TCP Initial Sequence Number. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Confidentiality.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2023-45237

больше 1 года назад

EDK2's Network Package is susceptible to a predictable TCP Initial Sequence Number. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Confidentiality.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2023-45237

больше 1 года назад

EDK2's Network Package is susceptible to a predictable TCP Initial Sequence Number. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Confidentiality.

CVSS3: 5.3
EPSS: Низкий
msrc логотип

CVE-2023-45237

около 1 года назад

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2023-45237

больше 1 года назад

EDK2's Network Package is susceptible to a predictable TCP Initial Seq ...

CVSS3: 5.3
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:4088-1

7 месяцев назад

Security update for ovmf

EPSS: Низкий
github логотип

GHSA-xvcj-qw55-xx42

около 1 года назад

EDK2 contains a vulnerability when S3 sleep is activated where an Attacker may cause a Division-By-Zero due to a UNIT32 overflow via local access. A successful exploit of this vulnerability may lead to a loss of Availability.

CVSS3: 6
EPSS: Низкий
github логотип

GHSA-fxqf-p2p3-gxvr

больше 1 года назад

EDK2's Network Package is susceptible to a predictable TCP Initial Sequence Number. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Confidentiality.

CVSS3: 5.3
EPSS: Низкий
fstec логотип

BDU:2024-00626

почти 2 года назад

Уязвимость функции NetRandomInitSeed() библиотеки Tianocore edk2, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации или вызвать отказ в обслуживании

CVSS3: 5.3
EPSS: Низкий
oracle-oval логотип

ELSA-2024-9088

7 месяцев назад

ELSA-2024-9088: edk2 security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2024-00658

Уязвимость компонента TCP Initial Sequence Number Handler библиотеки Tianocore EDK2, позволяющая нарушителю получить несанкционированный доступ к конфиденциальным данным

CVSS3: 5.3
0%
Низкий
больше 1 года назад
redos логотип
ROS-20240625-06

Множественные уязвимости edk2-tools

CVSS3: 8.3
12 месяцев назад
ubuntu логотип
CVE-2024-1298

EDK2 contains a vulnerability when S3 sleep is activated where an Attacker may cause a Division-By-Zero due to a UNIT32 overflow via local access. A successful exploit of this vulnerability may lead to a loss of Availability.

CVSS3: 6
0%
Низкий
около 1 года назад
redhat логотип
CVE-2024-1298

EDK2 contains a vulnerability when S3 sleep is activated where an Attacker may cause a Division-By-Zero due to a UNIT32 overflow via local access. A successful exploit of this vulnerability may lead to a loss of Availability.

CVSS3: 6
0%
Низкий
около 1 года назад
nvd логотип
CVE-2024-1298

EDK2 contains a vulnerability when S3 sleep is activated where an Attacker may cause a Division-By-Zero due to a UNIT32 overflow via local access. A successful exploit of this vulnerability may lead to a loss of Availability.

CVSS3: 6
0%
Низкий
около 1 года назад
msrc логотип
CVSS3: 6
0%
Низкий
около 1 года назад
debian логотип
CVE-2024-1298

EDK2 contains a vulnerability when S3 sleep is activated where an Atta ...

CVSS3: 6
0%
Низкий
около 1 года назад
ubuntu логотип
CVE-2023-45237

EDK2's Network Package is susceptible to a predictable TCP Initial Sequence Number. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Confidentiality.

CVSS3: 5.3
0%
Низкий
больше 1 года назад
redhat логотип
CVE-2023-45237

EDK2's Network Package is susceptible to a predictable TCP Initial Sequence Number. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Confidentiality.

CVSS3: 7.5
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2023-45237

EDK2's Network Package is susceptible to a predictable TCP Initial Sequence Number. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Confidentiality.

CVSS3: 5.3
0%
Низкий
больше 1 года назад
msrc логотип
CVSS3: 7.5
0%
Низкий
около 1 года назад
debian логотип
CVE-2023-45237

EDK2's Network Package is susceptible to a predictable TCP Initial Seq ...

CVSS3: 5.3
0%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2024:4088-1

Security update for ovmf

0%
Низкий
7 месяцев назад
github логотип
GHSA-xvcj-qw55-xx42

EDK2 contains a vulnerability when S3 sleep is activated where an Attacker may cause a Division-By-Zero due to a UNIT32 overflow via local access. A successful exploit of this vulnerability may lead to a loss of Availability.

CVSS3: 6
0%
Низкий
около 1 года назад
github логотип
GHSA-fxqf-p2p3-gxvr

EDK2's Network Package is susceptible to a predictable TCP Initial Sequence Number. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Confidentiality.

CVSS3: 5.3
0%
Низкий
больше 1 года назад
fstec логотип
BDU:2024-00626

Уязвимость функции NetRandomInitSeed() библиотеки Tianocore edk2, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации или вызвать отказ в обслуживании

CVSS3: 5.3
0%
Низкий
почти 2 года назад
oracle-oval логотип
ELSA-2024-9088

ELSA-2024-9088: edk2 security update (MODERATE)

7 месяцев назад

Уязвимостей на страницу