edk2-ovmf vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the edk2-ovmf package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • M
Heap-based Buffer Overflow

*
  • M
Access of Resource Using Incompatible Type ('Type Confusion')

*
  • L
Information Exposure

*
  • M
Divide By Zero

*
  • L
Use After Free

*
  • L
Resource Exhaustion

*
  • L
NULL Pointer Dereference

*
  • H
Out-of-Bounds

<0:20231122-6.el9
  • M
Information Exposure

<0:20231122-6.el9_4.2
  • H
Out-of-Bounds

<0:20231122-6.el9
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:20231122-6.el9
  • H
Out-of-Bounds

<0:20230524-4.el9_3.2
  • M
Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)

<0:20231122-6.el9_4.2
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:20231122-6.el9
  • H
Out-of-bounds Read

<0:20231122-6.el9
  • H
Out-of-Bounds

<0:20230524-4.el9_3.2
  • L
Resource Exhaustion

*
  • L
Reversible One-Way Hash

*
  • H
Integer Overflow to Buffer Overflow

<0:20231122-6.el9
  • H
Integer Overflow to Buffer Overflow

<0:20231122-6.el9
  • M
Integer Overflow to Buffer Overflow

<0:20231122-6.el9_4.2
  • H
Resource Exhaustion

<0:20231122-6.el9
  • M
Resource Exhaustion

<0:20230524-3.el9
  • H
Incorrect Type Conversion or Cast

<0:20221207gitfff6d81270b5-9.el9_2
  • H
Use After Free

<0:20221207gitfff6d81270b5-9.el9_2
  • H
Double Free

<0:20221207gitfff6d81270b5-9.el9_2
  • H
Information Exposure

<0:20221207gitfff6d81270b5-9.el9_2
  • H
Buffer Underflow

<0:20221207gitfff6d81270b5-9.el9_2
  • M
Unchecked Return Value

<0:20230524-3.el9