Vulnerabilities > Tianocore > Edk2 > 202211

DATE CVE VULNERABILITY TITLE RISK
2024-01-09 CVE-2022-36764 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Tianocore Edk2
EDK2 is susceptible to a vulnerability in the Tcg2MeasurePeImage() function, allowing a user to trigger a heap buffer overflow via a local network.
local
low complexity
tianocore CWE-119
7.8
2024-01-09 CVE-2022-36765 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Tianocore Edk2
EDK2 is susceptible to a vulnerability in the CreateHob() function, allowing a user to trigger a integer overflow to buffer overflow via a local network.
local
low complexity
tianocore CWE-119
7.8