vulnerability

Oracle Linux: CVE-2018-12182: ELSA-2020-5861: edk2 security update (IMPORTANT)

Severity
5
CVSS
(AV:L/AC:L/Au:N/C:P/I:P/A:P)
Published
Mar 28, 2019
Added
Sep 29, 2020
Modified
Dec 3, 2025

Description

Insufficient memory write check in SMM service for EDK II may allow an authenticated user to potentially enable escalation of privilege, information disclosure and/or denial of service via local access.

Solutions

oracle-linux-upgrade-aavmforacle-linux-upgrade-ovmf
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.