PT-2025-11308 · Edk2+5 · Edk2+5

Published

2025-03-14

·

Updated

2025-11-28

·

CVE-2025-2295

CVSS v2.0

4.7

Medium

VectorAV:N/AC:L/Au:M/C:N/I:P/A:P
Name of the Vulnerable Software and Affected Versions: EDK2 (affected versions not specified)
Description: The issue is related to an Integer Overflow or Wraparound in the BIOS of EDK2, which can be triggered by a user through network means. A successful exploitation of this issue may lead to a denial of service.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this issue.

Exploit

Fix

DoS

Integer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

AZL-58803
AZL-58822
AZL-58828
BDU:2025-11907
CVE-2025-2295
GHSA-8522-69FH-W74X
USN-7894-1
USN-7894-2

Affected Products

Astra Linux
Debian
Edk2
Linuxmint
Red Os
Ubuntu