edk2-ovmf vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the edk2-ovmf package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • M
CVE-2024-38796

<0:20220126gitbb1bba3d77-13.el8_10.4
  • M
CVE-2024-1298

<0:20220126gitbb1bba3d77-13.el8_10.2
  • M
Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)

<0:20220126gitbb1bba3d77-13.el8_10.2
  • M
Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)

<0:20220126gitbb1bba3d77-13.el8_10.2
  • H
Out-of-Bounds

<0:20220126gitbb1bba3d77-13.el8_10
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:20220126gitbb1bba3d77-13.el8_10
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:20220126gitbb1bba3d77-13.el8_10
  • H
Out-of-bounds Read

<0:20220126gitbb1bba3d77-13.el8_10
  • H
Out-of-bounds Read

<0:20220126gitbb1bba3d77-13.el8_10
  • H
Out-of-Bounds

<0:20220126gitbb1bba3d77-13.el8_10
  • H
Out-of-Bounds

<0:20220126gitbb1bba3d77-13.el8_10
  • H
Out-of-Bounds

<0:20220126gitbb1bba3d77-13.el8_10
  • H
Out-of-Bounds

<0:20220126gitbb1bba3d77-6.el8_9.6.alma
  • H
Out-of-Bounds

<0:20220126gitbb1bba3d77-6.el8_9.6.alma
  • L
Inefficient Regular Expression Complexity

<0:20220126gitbb1bba3d77-6.el8_9.3
  • M
CVE-2019-14560

<0:20220126gitbb1bba3d77-6.el8
  • M
NULL Pointer Dereference

<0:20210527gite1999b264f1f-3.el8
  • M
Integer Overflow or Wraparound

<0:20210527gite1999b264f1f-3.el8
  • H
Access of Resource Using Incompatible Type ('Type Confusion')

<0:20220126gitbb1bba3d77-4.el8
  • H
Use After Free

<0:20220126gitbb1bba3d77-4.el8
  • H
Double Free

<0:20220126gitbb1bba3d77-4.el8
  • H
Information Exposure

<0:20220126gitbb1bba3d77-4.el8