First published: Wed Mar 27 2019(Updated: )
Last updated 29 July 2024
Credit: secure@intel.com secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Tianocore EDK II | ||
debian/edk2 | 2020.11-2+deb11u2 2022.11-6+deb12u1 2024.05-2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-12183 is a vulnerability in DxeCore for EDK II that may allow an unauthenticated user to potentially enable escalation of privilege, information disclosure, and/or denial of service via local access.
CVE-2018-12183 has a severity rating of 6.8 (medium).
An unauthenticated user can potentially exploit CVE-2018-12183 to enable escalation of privilege, information disclosure, and/or denial of service by gaining local access.
It is recommended to apply the necessary patches and updates provided by the software vendor or developer to mitigate the vulnerability.
You can find more information about CVE-2018-12183 on the following references: [SecurityFocus](http://www.securityfocus.com/bid/107643), [EDK2 Security Advisory](https://edk2-docs.gitbooks.io/security-advisory/content/unlimited-fv-recursion.html), [Fedora Project](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/TQYVZRFEXSN3KS43AVH4D7QX553EZQYP/).