Logic issue in variable service module for EDK II/UDK2018/UDK2017/UDK2015 may allow an authenticated user to potentially enable escalation of privilege, information disclosure and/or denial of service via local access.
2019-03-27T20:29:03.770
2024-11-21T04:05:46.360
Modified
CVSSv3.0: 7.8 (HIGH)
AV:L/AC:L/Au:N/C:P/I:P/A:P
3.9
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | tianocore | edk_ii | udk2015 | Yes |
Application | tianocore | edk_ii | udk2017 | Yes |
Application | tianocore | edk_ii | udk2018 | Yes |