VDB

CVE-2019-14584

CVE-2019-14584 PUBLISHED CVSS 7.800000190734863 HIGH

Null pointer dereference in Tianocore EDK2 may allow an authenticated user to potentially enable escalation of privilege via local access.

EPSS 0.33% · 25.4th percentile

Risk Scores

CVSS 3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.33%
25.4th percentile

Affected Products

VendorProductVersions
Ubuntu:20.04:LTSedk20, 0~20190606.20d2e5a1-2ubuntu1, 0~20190828.37eef910-3
Ubuntu:16.04:LTSedk20, 0~20160104.c2a892d7-1, 0~20160408.ffea0a2c-2
Ubuntu:18.04:LTSedk20, 0~20170911.5dfba97c-1, 0~20171010.234dbcef-1

Timeline

  • Dec 31, 2019 CVE Published
  • Jun 4, 2021 EPSS Score
  • Jun 4, 2021 PoC Published
  • Aug 6, 2021 EPSS Score
  • Oct 6, 2021 EPSS Score
  • Dec 7, 2021 EPSS Score
  • Feb 6, 2022 EPSS Score
  • Apr 8, 2022 EPSS Score
  • Jun 8, 2022 EPSS Score
  • Aug 9, 2022 EPSS Score
  • Oct 9, 2022 EPSS Score
  • Dec 10, 2022 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›