Certain size values in firmware binary headers could trigger out of bounds reads during signature validation, leading to denial of service or potentially limited leakage of information about out-of-bounds memory contents.
An attacker with specialized hardware and physical access to an impacted device may be able to perform a voltage fault injection attack resulting in compromise of the ASP secure boot potentially leading to arbitrary code execution.
Improper initialization of variables in the DXE driver may allow a privileged user to leak sensitive information via local access.
A division-by-zero error on some AMD processors can potentially return speculative data resulting in loss of confidentiality.
Improper initialization of variables in the DXE driver may allow a privileged user to leak sensitive information via local access.