vulnerability
Ubuntu: USN-6920-1 (CVE-2017-5731): EDK II vulnerabilities
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 5 | (AV:L/AC:L/Au:N/C:P/I:P/A:P) | Oct 28, 2019 | Jul 31, 2024 | Mar 27, 2026 |
Severity
5
CVSS
(AV:L/AC:L/Au:N/C:P/I:P/A:P)
Published
Oct 28, 2019
Added
Jul 31, 2024
Modified
Mar 27, 2026
Description
Bounds checking in Tianocompress before November 7, 2017 may allow an authenticated user to potentially enable an escalation of privilege via local access.
Solutions
ubuntu-pro-upgrade-ovmfubuntu-pro-upgrade-qemu-efiubuntu-pro-upgrade-qemu-efi-aarch64ubuntu-pro-upgrade-qemu-efi-arm
Rapid7 Labs
2026 Global Threat Landscape Report
The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.