cbcvebase.
CVE-2019-14559
published 2020-11-23

CVE-2019-14559: Uncontrolled resource consumption in EDK II may allow an unauthenticated user to potentially enable denial of service via network access.

high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
Uncontrolled resource consumption in EDK II may allow an unauthenticated user to potentially enable denial of service via network access.

Affected

7 ranges
VendorProductVersion rangeFixed in
debianedk2< edk2 0~20200229.4c0f6e34-1 (bookworm)edk2 0~20200229.4c0f6e34-1 (bookworm)
tianocoreedk2>= 0 < 0~20200229.4c0f6e34-10~20200229.4c0f6e34-1
tianocoreedk2>= 0 < 0~20200229.4c0f6e34-10~20200229.4c0f6e34-1
tianocoreedk2>= 0 < 0~20200229.4c0f6e34-10~20200229.4c0f6e34-1
tianocoreedk2>= 0 < 0~20200229.4c0f6e34-10~20200229.4c0f6e34-1
tianocoreedk2>= 0 < 0~20160408.ffea0a2c-2ubuntu0.10~20160408.ffea0a2c-2ubuntu0.1
tianocoreedk2>= 0 < 0~20180205.c0d9813c-2ubuntu0.20~20180205.c0d9813c-2ubuntu0.2

CVSS provenance

nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
osv9.1CRITICAL