vulnerability
Amazon Linux AMI 2: CVE-2018-12182: Security patch for edk2 (ALAS-2019-1290)
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
5 | (AV:L/AC:L/Au:N/C:P/I:P/A:P) | Mar 27, 2019 | Apr 27, 2020 | Nov 27, 2024 |
Severity
5
CVSS
(AV:L/AC:L/Au:N/C:P/I:P/A:P)
Published
Mar 27, 2019
Added
Apr 27, 2020
Modified
Nov 27, 2024
Description
Insufficient memory write check in SMM service for EDK II may allow an authenticated user to potentially enable escalation of privilege, information disclosure and/or denial of service via local access.
Solution(s)
amazon-linux-ami-2-upgrade-edk2-aarch64amazon-linux-ami-2-upgrade-edk2-debuginfoamazon-linux-ami-2-upgrade-edk2-ovmfamazon-linux-ami-2-upgrade-edk2-toolsamazon-linux-ami-2-upgrade-edk2-tools-docamazon-linux-ami-2-upgrade-edk2-tools-python

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.