Medium severity6.7NVD Advisory· Published Mar 27, 2019· Updated Jun 17, 2026
CVE-2018-12182
CVE-2018-12182
Description
Insufficient memory write check in SMM service for EDK II may allow an authenticated user to potentially enable escalation of privilege, information disclosure and/or denial of service via local access.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Extensible Firmware Interface Development Kit (EDK II)/Extensible Firmware Interface Development Kit (EDK II)v5Range: N/A
Patches
Vulnerability mechanics
References
4- edk2-docs.gitbooks.io/security-advisory/content/sw-smi-confused-deputy-smramsavestate_c.htmlnvdPatchVendor Advisory
- www.securityfocus.com/bid/107648nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TQYVZRFEXSN3KS43AVH4D7QX553EZQYP/nvd
- support.hpe.com/hpsc/doc/public/displaynvd
News mentions
0No linked articles in our index yet.