CVE-2014-8271: Buffer Overflow
Buffer overflow in the Reclaim function in Tianocore EDK2 before SVN 16280 allows physically proximate attackers to gain privileges via a long variable name.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2014-8271?
CVE-2014-8271 is a vulnerability that allows physically proximate attackers to gain privileges via a buffer overflow in the Reclaim function in Tianocore EDK2 before SVN 16280.
How severe is CVE-2014-8271?
CVE-2014-8271 has a severity rating of 6.8 out of 10 (medium severity).
What software is affected by CVE-2014-8271?
Tianocore EDK2 versions before SVN 16280 are affected by CVE-2014-8271.
How can physically proximate attackers exploit CVE-2014-8271?
Physically proximate attackers can exploit CVE-2014-8271 by using a long variable name to trigger a buffer overflow in the Reclaim function of Tianocore EDK2.
Is there a fix available for CVE-2014-8271?
Yes, an updated version of Tianocore EDK2 (SVN 16280 or newer) addresses the vulnerability. It is recommended to upgrade to the latest version to mitigate the risk.