Количество 23
Количество 23
ELSA-2025-28047
ELSA-2025-28047: edk2 security update (IMPORTANT)
ELSA-2025-20669
ELSA-2025-20669: edk2 security update (IMPORTANT)
CVE-2024-36331
Improper initialization of CPU cache memory could allow a privileged attacker with hypervisor access to overwrite SEV-SNP guest memory resulting in loss of data integrity.
CVE-2024-36331
Improper initialization of CPU cache memory could allow a privileged attacker with hypervisor access to overwrite SEV-SNP guest memory resulting in loss of data integrity.
CVE-2024-36331
Improper initialization of CPU cache memory could allow a privileged a ...
GHSA-m44f-cvp5-f9xf
Improper initialization of CPU cache memory could allow a privileged attacker with hypervisor access to overwrite SEV-SNP guest memory resulting in loss of data integrity.
BDU:2025-15227
Уязвимость ядра операционной системы Linux, связанная с ошибками инициализации памяти, позволяющая нарушителю оказать воздействие на целостность защищаемой информации
CVE-2024-38797
EDK2 contains a vulnerability in the HashPeImageByType(). A user may cause a read out of bounds when a corrupted data pointer and length are sent via an adjecent network. A successful exploit of this vulnerability may lead to a loss of Integrity and/or Availability.
CVE-2024-38797
EDK2 contains a vulnerability in the HashPeImageByType(). A user may cause a read out of bounds when a corrupted data pointer and length are sent via an adjecent network. A successful exploit of this vulnerability may lead to a loss of Integrity and/or Availability.
CVE-2024-38797
EDK2 contains a vulnerability in the HashPeImageByType(). A user may cause a read out of bounds when a corrupted data pointer and length are sent via an adjecent network. A successful exploit of this vulnerability may lead to a loss of Integrity and/or Availability.
CVE-2024-38797
EDK2 contains a vulnerability in the HashPeImageByType(). A user may c ...
BDU:2025-10943
Уязвимость функции HashPeImageByType() библиотеки Tianocore EDK2, позволяющая нарушителю оказать воздействие на целостность и доступность защищаемой информации
CVE-2024-38805
EDK2 contains a vulnerability in BIOS where a user may cause an Integer Overflow or Wraparound by network means. A successful exploitation of this vulnerability may lead to denial of service.
CVE-2024-38805
EDK2 contains a vulnerability in BIOS where a user may cause an Integer Overflow or Wraparound by network means. A successful exploitation of this vulnerability may lead to denial of service.
CVE-2024-38805
EDK2 contains a vulnerability in BIOS where a user may cause an Intege ...
CVE-2025-3770
EDK2 contains a vulnerability in BIOS where an attacker may cause “Protection Mechanism Failure” by local access. Successful exploitation of this vulnerability will lead to arbitrary code execution and impact Confidentiality, Integrity, and Availability.
CVE-2025-3770
EDK2 contains a vulnerability in BIOS where an attacker may cause “Protection Mechanism Failure” by local access. Successful exploitation of this vulnerability will lead to arbitrary code execution and impact Confidentiality, Integrity, and Availability.
CVE-2025-3770
EDK2 contains a vulnerability in BIOS where an attacker may cause “Protection Mechanism Failure” by local access. Successful exploitation of this vulnerability will lead to arbitrary code execution and impact Confidentiality, Integrity, and Availability.
CVE-2025-3770
SMM IDT Privilege Escalation Vulnerability
CVE-2025-3770
EDK2 contains a vulnerability in BIOS where an attacker may cause \u20 ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
ELSA-2025-28047 ELSA-2025-28047: edk2 security update (IMPORTANT) | около 1 месяца назад | |||
ELSA-2025-20669 ELSA-2025-20669: edk2 security update (IMPORTANT) | около 2 месяцев назад | |||
CVE-2024-36331 Improper initialization of CPU cache memory could allow a privileged attacker with hypervisor access to overwrite SEV-SNP guest memory resulting in loss of data integrity. | CVSS3: 3.2 | 0% Низкий | 4 месяца назад | |
CVE-2024-36331 Improper initialization of CPU cache memory could allow a privileged attacker with hypervisor access to overwrite SEV-SNP guest memory resulting in loss of data integrity. | CVSS3: 3.2 | 0% Низкий | 4 месяца назад | |
CVE-2024-36331 Improper initialization of CPU cache memory could allow a privileged a ... | CVSS3: 3.2 | 0% Низкий | 4 месяца назад | |
GHSA-m44f-cvp5-f9xf Improper initialization of CPU cache memory could allow a privileged attacker with hypervisor access to overwrite SEV-SNP guest memory resulting in loss of data integrity. | CVSS3: 3.2 | 0% Низкий | 4 месяца назад | |
BDU:2025-15227 Уязвимость ядра операционной системы Linux, связанная с ошибками инициализации памяти, позволяющая нарушителю оказать воздействие на целостность защищаемой информации | CVSS3: 3.2 | 0% Низкий | 10 месяцев назад | |
CVE-2024-38797 EDK2 contains a vulnerability in the HashPeImageByType(). A user may cause a read out of bounds when a corrupted data pointer and length are sent via an adjecent network. A successful exploit of this vulnerability may lead to a loss of Integrity and/or Availability. | CVSS3: 4.6 | 0% Низкий | 10 месяцев назад | |
CVE-2024-38797 EDK2 contains a vulnerability in the HashPeImageByType(). A user may cause a read out of bounds when a corrupted data pointer and length are sent via an adjecent network. A successful exploit of this vulnerability may lead to a loss of Integrity and/or Availability. | CVSS3: 4.6 | 0% Низкий | 10 месяцев назад | |
CVE-2024-38797 EDK2 contains a vulnerability in the HashPeImageByType(). A user may cause a read out of bounds when a corrupted data pointer and length are sent via an adjecent network. A successful exploit of this vulnerability may lead to a loss of Integrity and/or Availability. | CVSS3: 4.6 | 0% Низкий | 10 месяцев назад | |
CVE-2024-38797 EDK2 contains a vulnerability in the HashPeImageByType(). A user may c ... | CVSS3: 4.6 | 0% Низкий | 10 месяцев назад | |
BDU:2025-10943 Уязвимость функции HashPeImageByType() библиотеки Tianocore EDK2, позволяющая нарушителю оказать воздействие на целостность и доступность защищаемой информации | CVSS3: 4.6 | 0% Низкий | 10 месяцев назад | |
CVE-2024-38805 EDK2 contains a vulnerability in BIOS where a user may cause an Integer Overflow or Wraparound by network means. A successful exploitation of this vulnerability may lead to denial of service. | CVSS3: 6.3 | 0% Низкий | 5 месяцев назад | |
CVE-2024-38805 EDK2 contains a vulnerability in BIOS where a user may cause an Integer Overflow or Wraparound by network means. A successful exploitation of this vulnerability may lead to denial of service. | CVSS3: 6.3 | 0% Низкий | 5 месяцев назад | |
CVE-2024-38805 EDK2 contains a vulnerability in BIOS where a user may cause an Intege ... | CVSS3: 6.3 | 0% Низкий | 5 месяцев назад | |
CVE-2025-3770 EDK2 contains a vulnerability in BIOS where an attacker may cause “Protection Mechanism Failure” by local access. Successful exploitation of this vulnerability will lead to arbitrary code execution and impact Confidentiality, Integrity, and Availability. | CVSS3: 7 | 0% Низкий | 5 месяцев назад | |
CVE-2025-3770 EDK2 contains a vulnerability in BIOS where an attacker may cause “Protection Mechanism Failure” by local access. Successful exploitation of this vulnerability will lead to arbitrary code execution and impact Confidentiality, Integrity, and Availability. | 0% Низкий | 5 месяцев назад | ||
CVE-2025-3770 EDK2 contains a vulnerability in BIOS where an attacker may cause “Protection Mechanism Failure” by local access. Successful exploitation of this vulnerability will lead to arbitrary code execution and impact Confidentiality, Integrity, and Availability. | CVSS3: 7 | 0% Низкий | 5 месяцев назад | |
CVE-2025-3770 SMM IDT Privilege Escalation Vulnerability | CVSS3: 7 | 0% Низкий | 5 месяцев назад | |
CVE-2025-3770 EDK2 contains a vulnerability in BIOS where an attacker may cause \u20 ... | CVSS3: 7 | 0% Низкий | 5 месяцев назад |
Уязвимостей на страницу