PT-2019-10725 · Intel+4 · Udk2017+7

Published

2018-12-17

·

Updated

2024-07-29

·

CVE-2018-3613

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions EDK II (affected versions not specified) UDK2018 (affected versions not specified) UDK2017 (affected versions not specified) UDK2015 (affected versions not specified)
Description The issue is related to a logic problem in the variable service module, which may allow an authenticated user to potentially enable escalation of privilege, information disclosure, and/or denial of service via local access.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

CESA-2019_2125
CVE-2018-3613
OPENSUSE-SU-2018_4240-1
OPENSUSE-SU-2018_4254-1
OPENSUSE-SU-2024:11134-1
RHSA-2019:2125
RHSA-2019_2125
SUSE-SU-2018:4155-1
SUSE-SU-2018:4194-1
SUSE-SU-2018:4207-1
USN-6920-1

Affected Products

Centos
Edk Ii
Red Hat
Suse
Udk2015
Udk2017
Udk2018
Ubuntu