Vulnerabilities > Tianocore > EDK II > Critical

DATE CVE VULNERABILITY TITLE RISK
2019-03-27 CVE-2018-12178 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Tianocore EDK II
Buffer overflow in network stack for EDK II may allow unprivileged user to potentially enable escalation of privilege and/or denial of service via network.
network
low complexity
tianocore CWE-119
critical
9.1
2019-03-27 CVE-2019-0160 Out-of-bounds Write vulnerability in multiple products
Buffer overflow in system firmware for EDK II may allow unauthenticated user to potentially enable escalation of privilege and/or denial of service via network access.
network
low complexity
tianocore opensuse fedoraproject redhat CWE-787
critical
9.8