Integer overflow in the Drive Execution Environment (DXE) phase in the Capsule Update feature in the UEFI implementation in EDK2 allows physically proximate malicious users to bypass intended access restrictions via crafted data.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
tianocore edk2 - |