CNNVD-202508-1052 Information

CNNVD ID

CNNVD-202508-1052

CVE-2024-38805

  • CNNVD Published: 2025-08-12

Description (Chinese)

EDK2是Tianocore社区的一套基于UEFI和PI规范的跨平台固件开发环境。 EDK2存在安全漏洞,该漏洞源于整数溢出或环绕错误,可能导致拒绝服务。

Description (English)

EDK2 is a set of cross-platform solidware development environments based on UEFI and PI norms in the community of Tianocore. EDK2 has a security loophole, which arises from a whole number of spills or errors that may lead to the denial of services.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

tianocore

Published

2025-08-12

Last Modified

2026-02-24

References

https://github.com/tianocore/edk2/security/advisories/GHSA-p7wp-52j7-6r5x

Patch

https://github.com/tianocore/edk2/releases

Share on: