Vulnerabilities (CVE)

Filtered by vendor Siemens
Filtered by product Efibootguard
Angry Yack Logo
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-39950 1 Siemens 1 Efibootguard 2024-11-21 N/A 6.1 MEDIUM
efibootguard is a simple UEFI boot loader with support for safely switching between current and updated partition sets. Insufficient or missing validation and sanitization of input from untrustworthy bootloader environment files can cause crashes and probably also code injections into `bg_setenv`) or programs using `libebgenv`. This is triggered when the affected components try to modify a manipulated environment, in particular its user variables. Furthermore, `bg_printenv` may crash over invali ...

Show More