First published: Mon Nov 23 2020(Updated: )
Integer overflow in DxeImageVerificationHandler() EDK II may allow an authenticated user to potentially enable denial of service via local access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Tianocore EDK II | ||
Debian | =9.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2019-14562.
The title of this vulnerability is 'Integer overflow in DxeImageVerificationHandler() EDK II may allow an authenticated user to potentially enable denial of service via local access.'
The severity of CVE-2019-14562 is medium with a CVSS score of 5.5.
Tianocore EDK2 and Debian Debian Linux version 9.0 are affected by CVE-2019-14562.
An authenticated user may potentially enable denial of service via local access by exploiting the integer overflow in DxeImageVerificationHandler() in EDK II.