EDK2 contains a vulnerability in the PeCoffLoaderRelocateImage(). An Attacker may cause memory corruption due to an overflow via an adjacent network. A successful exploit of this vulnerability may lead to a loss of Confidentiality, Integrity, and/or Availability.
Metrics
Affected Vendors & Products
References
History
Thu, 03 Oct 2024 14:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 01 Oct 2024 01:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
| |
Metrics |
threat_severity
|
threat_severity
|
Fri, 27 Sep 2024 22:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | EDK2 contains a vulnerability in the PeCoffLoaderRelocateImage(). An Attacker may cause memory corruption due to an overflow via an adjacent network. A successful exploit of this vulnerability may lead to a loss of Confidentiality, Integrity, and/or Availability. | |
Title | Integer overflow in PeCoffLoaderRelocateImage | |
Weaknesses | CWE-122 | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: TianoCore
Published: 2024-09-27T21:45:00.730Z
Updated: 2024-10-03T13:57:22.176Z
Reserved: 2024-06-19T17:05:09.904Z
Link: CVE-2024-38796
Vulnrichment
Updated: 2024-10-03T13:57:14.151Z
NVD
Status : Awaiting Analysis
Published: 2024-09-27T22:15:13.153
Modified: 2024-09-30T12:45:57.823
Link: CVE-2024-38796
Redhat