edk2 vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the edk2 package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • L
CVE-2024-2511

*
  • L
CVE-2024-4741

*
  • M
Out-of-Bounds

<0~20191122.bd85bf54-2ubuntu3.5
  • M
Out-of-Bounds

<0~20191122.bd85bf54-2ubuntu3.5
  • M
Out-of-Bounds

<0~20191122.bd85bf54-2ubuntu3.5
  • M
CVE-2023-48733

<0~20191122.bd85bf54-2ubuntu3.5
  • L
Improper Certificate Validation

*
  • L
Improper Certificate Validation

*
  • L
Inefficient Regular Expression Complexity

*
  • L
Improper Certificate Validation

*
  • L
Allocation of Resources Without Limits or Throttling

*
  • L
Excessive Iteration

*
  • M
Out-of-Bounds

<0~20191122.bd85bf54-2ubuntu3.5
  • M
Out-of-bounds Read

*
  • M
Out-of-Bounds

<0~20191122.bd85bf54-2ubuntu3.5
  • M
Out-of-bounds Read

<0~20191122.bd85bf54-2ubuntu3.5
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

<0~20191122.bd85bf54-2ubuntu3.5
  • M
Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)

*
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

<0~20191122.bd85bf54-2ubuntu3.5
  • M
Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)

*
  • M
Out-of-Bounds

<0~20191122.bd85bf54-2ubuntu3.5
  • L
Improper Check for Unusual or Exceptional Conditions

*
  • L
CVE-2024-0727

*
  • M
Out-of-bounds Write

<0~20191122.bd85bf54-2ubuntu3.6
  • L
CVE-2021-38576

*
  • M
Out-of-Bounds

<0~20191122.bd85bf54-2ubuntu3.3
  • L
Out-of-bounds Read

<0~20191122.bd85bf54-2ubuntu3.3
  • L
Release of Invalid Pointer or Reference

*
  • L
Improper Input Validation

<0~20191122.bd85bf54-2ubuntu3.3
  • M
Uncontrolled Recursion

<0~20191122.bd85bf54-2ubuntu3.2
  • M
Out-of-bounds Write

<0~20191122.bd85bf54-2ubuntu3.2
  • L
Integer Overflow or Wraparound

<0~20191122.bd85bf54-2ubuntu3.3
  • L
Integer Overflow or Wraparound

<0~20191122.bd85bf54-2ubuntu3.1
  • L
NULL Pointer Dereference

<0~20191122.bd85bf54-2ubuntu3.1
  • L
CVE-2019-14560

*