Vulnerabilidades en TianoCore
27 resultadosAnálisis Vexday
TianoCore mantém 26 CVEs catalogadas na base, nenhuma sob exploração ativa (KEV) e sem críticas registradas, indicando risco gerido. A fraqueza dominante é CWE-122 (buffer overflow), tipicamente de impacto moderado em firmware. Ausência de publicações recentes sugere que a superfície de ataque não se expandiu nos últimos 90 dias.
CVE-2022-36765HIGHInteger Overflow in CreateHobEPSS 0.3%CVE-2025-2295LOWPotential iSCSI R2T PDU VulnerabilityEPSS 0.2%CVE-2024-38797MEDIUMOut-of-bounds Read in HashPeImageByType()EPSS 0.2%CVE-2024-1298MEDIUMInteger Overflow caused by divide by zero during S3 suspensionEPSS 0.2%CVE-2024-38805MEDIUMiSCSI Remote Memory Corruption and Denial of ServiceEPSS 0.2%CVE-2025-3770HIGHSMM IDT Privilege Escalation VulnerabilityEPSS 0.1%CVE-2024-38798MEDIUMUncleared password keystrokes in circular queue can lead to information disclosure or escalation of privilegeEPSS 0.1%