2.1
CVSSv2

CVE-2019-14562

Published: 23/11/2020 Updated: 01/01/2022
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Integer overflow in DxeImageVerificationHandler() EDK II may allow an authenticated user to potentially enable denial of service via local access.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

tianocore edk2 -

debian debian linux 9.0

Vendor Advisories

Debian Bug report logs - #968819 CVE-2019-14562 Package: src:edk2; Maintainer for src:edk2 is Debian QEMU Team <pkg-qemu-devel@listsaliothdebianorg>; Reported by: Moritz Muehlenhoff <jmm@debianorg> Date: Fri, 21 Aug 2020 18:09:01 UTC Severity: important Tags: security, upstream Reply or subscribe to this bu ...