High severity7.0NVD Advisory· Published Jan 9, 2024· Updated Jun 17, 2026
CVE-2022-36764
CVE-2022-36764
Description
EDK2 is susceptible to a vulnerability in the Tcg2MeasurePeImage() function, allowing a user to trigger a heap buffer overflow via a local network. Successful exploitation of this vulnerability may result in a compromise of confidentiality, integrity, and/or availability.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8- osv-coords5 versionspkg:rpm/opensuse/ovmf&distro=openSUSE%20Tumbleweedpkg:rpm/almalinux/edk2-toolspkg:rpm/almalinux/edk2-tools-docpkg:rpm/almalinux/edk2-aarch64pkg:rpm/almalinux/edk2-ovmf
< 202308-9.1+ 4 more
- (no CPE)range: < 202308-9.1
- (no CPE)range: < 20231122-6.el9
- (no CPE)range: < 20231122-6.el9
- (no CPE)range: < 20231122-6.el9
- (no CPE)range: < 20231122-6.el9
Patches
Vulnerability mechanics
References
3News mentions
0No linked articles in our index yet.