| Out-of-bounds Read | |
| Arbitrary Code Injection | |
| Active Debug Code | [edk2-stable202211,edk2-stable202502) |
| Integer Overflow or Wraparound | |
| Incorrect Behavior Order | |
| Out-of-bounds Read | |
| Integer Overflow or Wraparound | |
| Heap-based Buffer Overflow | |
| Divide By Zero | |
| Out-of-bounds Read | |
| Loop with Unreachable Exit Condition ('Infinite Loop') | |
| Buffer Overflow | |
| Use of a Cryptographically Weak Pseudo-Random Number Generator (PRNG) | |
| Buffer Overflow | |
| Buffer Overflow | |
| Out-of-bounds Read | |
| Information Exposure | |
| Loop with Unreachable Exit Condition ('Infinite Loop') | |
| Integer Overflow to Buffer Overflow | |
| Improper Check for Unusual or Exceptional Conditions | |
| Integer Overflow to Buffer Overflow | |
| Buffer Underflow | |
| Buffer Overflow | |
| NULL Pointer Dereference | |
| Out-of-bounds Write | |
| Buffer Overflow | |
| Insecure Encryption | |