CVE-2019-0161

Description

Stack overflow in XHCI for EDK II may allow an unauthenticated user to potentially enable denial of service via local access.

Risk Information

Base Score
5.5
MODERATE
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
0.045

Associated Vulnerability

VulnerabilityOS Platform
SUSE-SU-2019:1157-1(SUSE Linux Enterprise Desktop 12-SP4 ) qemu-ovmf-x86_64-2017+git1510945757.b2662641d5-3.16.1.noarch.rpmLinux
(RHSA-2019:2125) ovmf security and enhancement update OVMF-20180508-6.gitee3198e672e2.el7.noarch.rpmLinux
(CESA-2019:2125) ovmf security and enhancement update OVMF-20180508-6.gitee3198e672e2.el7.noarch.rpmLinux
OVMF update (ELSA-2019-2125) OVMF-20180508-6.gitee3198e672e2.el7.noarch.rpmLinux
UEFI firmware for virtual machines (USN-7060-1) ovmf_0~20191122.bd85bf54-2ubuntu3.6_all.debLinux
UEFI firmware for virtual machines (USN-7060-1) ovmf_2022.02-3ubuntu0.22.04.3_all.debLinux
UEFI firmware for virtual machines (USN-7060-1) ovmf-ia32_2022.02-3ubuntu0.22.04.3_all.debLinux
UEFI firmware for virtual machines (USN-7060-1) qemu-efi-aarch64_0~20191122.bd85bf54-2ubuntu3.6_all.debLinux
UEFI firmware for virtual machines (USN-7060-1) qemu-efi-aarch64_2022.02-3ubuntu0.22.04.3_all.debLinux
UEFI firmware for virtual machines (USN-7060-1) qemu-efi-arm_0~20191122.bd85bf54-2ubuntu3.6_all.debLinux
UEFI firmware for virtual machines (USN-7060-1) qemu-efi-arm_2022.02-3ubuntu0.22.04.3_all.debLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234