34. PartitionDxe and Udf Buffer Overflow

Description:

Buffer overflow in system firmware for EDK II may allow unauthenticated user to potentially enable escalation of privilege and/or denial of service via network access.

Impact

Escalation of privilege and/or denial of service

Severity

8.7 (High) - CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:H/A:H

Recommendation:

EDK II Commits:

Patch:

Acknowledgments:

Intel Team

References:

CVE-2019-0160

EDK II Bugzilla #828