Logic Issue in EDK II/UDK Series by Intel
CVE-2018-3613
7.8HIGH
Key Information:
- Vendor
- CVE Published:
- 27 March 2019
What is CVE-2018-3613?
A logic issue exists in the variable service module utilized by Intel's EDK II/UDK products, which could potentially be exploited by an authenticated user. This weakness may lead to escalation of privileges, unauthorized information disclosure, or even the possibility of inducing a denial of service through local access.
Affected Version(s)
Extensible Firmware Interface Development Kit (EDK II)
