CVE-2024-1298
EUVD-2024-1705930.05.2024, 21:15
EDK2 contains a vulnerability when S3 sleep is activated where an Attacker may cause a Division-By-Zero due to a UNIT32 overflow via local access. A successful exploit of this vulnerability may lead to a loss of Availability.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| tianocore | edk2 | 𝑥 < edk2-stable202405 | ADP |
Debian Releases
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||
|---|---|---|---|---|---|
| ovmf-202202 |
| ||||
| ovmf-202208 |
| ||||
| ovmf-202308 |
| ||||
| ovmf-tools-202202 |
| ||||
| ovmf-tools-202208 |
| ||||
| ovmf-tools-202308 |
| ||||
| qemu-ovmf-x86_64-202202 |
| ||||
| qemu-ovmf-x86_64-202208 |
| ||||
| qemu-ovmf-x86_64-202308 |
| ||||
| qemu-uefi-aarch64-202202 |
| ||||
| qemu-uefi-aarch64-202208 |
| ||||
| qemu-uefi-aarch64-202308 |
|
Red Hat Enterprise Linux Releases
Red Hat Product | |||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| edk2-aarch64 |
| ||||||||||||||
| edk2-ovmf |
| ||||||||||||||
| edk2-tools |
| ||||||||||||||
| edk2-tools-doc |
|
Common Weakness Enumeration
References