CVE-2018-12182: Medium severity edk ii vulnerability
Insufficient memory write check in SMM service for EDK II may allow an authenticated user to potentially enable escalation of privilege, information disclosure and/or denial of service via local access.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2018-12182?
CVE-2018-12182 refers to an insufficient memory write check vulnerability in the SMM service for EDK II.
What is the severity of CVE-2018-12182?
CVE-2018-12182 has a severity rating of medium with a CVSS score of 6.7.
How does CVE-2018-12182 affect the Tianocore Edk Ii software?
CVE-2018-12182 affects the Tianocore Edk Ii software version and may allow an authenticated user to enable privilege escalation, information disclosure, and/or denial of service through local access.
How can an authenticated user exploit CVE-2018-12182?
An authenticated user can potentially exploit CVE-2018-12182 through local access to enable privilege escalation, information disclosure, and/or denial of service.
Is there a fix for CVE-2018-12182?
Yes, it is recommended to apply the latest security patches or updates provided by Tianocore for the Edk Ii software.