Search CVE reports


Toggle filters

151 – 160 of 175 results


CVE-2019-14584

Low priority
Fixed

Null pointer dereference in Tianocore EDK2 may allow an authenticated user to potentially enable escalation of privilege via local access.

1 affected package

edk2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
edk2 — — — Fixed Fixed
Show less packages

CVE-2019-14575

Low priority
Fixed

Logic issue in DxeImageVerificationHandler() for EDK II may allow an authenticated user to potentially enable escalation of privilege via local access.

1 affected package

edk2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
edk2 — — — Not affected Fixed
Show less packages

CVE-2019-14563

Low priority
Fixed

Integer truncation in EDK II may allow an authenticated user to potentially enable escalation of privilege via local access.

1 affected package

edk2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
edk2 — — — Not affected Fixed
Show less packages

CVE-2019-14559

Low priority
Fixed

Uncontrolled resource consumption in EDK II may allow an unauthenticated user to potentially enable denial of service via network access.

1 affected package

edk2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
edk2 — — — Not affected Fixed
Show less packages

CVE-2019-14558

Medium priority
Fixed

Insufficient control flow management in BIOS firmware for 8th, 9th, 10th Generation Intel(R) Core(TM), Intel(R) Celeron(R) Processor 4000 & 5000 Series Processors may allow an authenticated user to potentially enable denial of...

1 affected package

edk2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
edk2 — — — Not affected Fixed
Show less packages

CVE-2019-1551

Low priority

Some fixes available 5 of 7

There is an overflow bug in the x64_64 Montgomery squaring procedure used in exponentiation with 512-bit moduli. No EC algorithms are affected. Analysis suggests that attacks against 2-prime RSA1024, 3-prime RSA1536, and DSA1024...

4 affected packages

edk2, nodejs, openssl, openssl1.0

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
edk2 — — — Not affected Not affected
nodejs — — — Not affected Not affected
openssl — — — Fixed Fixed
openssl1.0 — — — Not in release Fixed
Show less packages

CVE-2018-3630

Low priority
Ignored

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2018. Notes: none

1 affected package

edk2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
edk2 — — — — Not affected
Show less packages

CVE-2017-5735

Medium priority
Not affected

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

1 affected package

edk2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
edk2 — — — — Not affected
Show less packages

CVE-2017-5734

Medium priority
Not affected

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Notes: none

1 affected package

edk2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
edk2 — — — — Not affected
Show less packages

CVE-2017-5733

Medium priority
Not affected

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2017. Notes: none

1 affected package

edk2

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
edk2 — — — — Not affected
Show less packages