VYPR

uefi-firmware-parser

by Theopolis

Source repositories

CVEs (2)

  • CVE-2026-54334CriSep 14, 2026
    risk 0.57cvss 9.8epss 0.00

    UEFI Firmware Parser parses BIOS, Intel ME, and UEFI firmware structures including volumes, file systems, and files. Prior to 1.14, ReadCLen() in uefi_firmware/compression/Tiano/Decompress.c reads Number from GetBits(Sd, CBIT) with CBIT = 9 and can obtain 511 entries for the…

  • CVE-2026-54333CriSep 14, 2026
    risk 0.57cvss 9.8epss 0.00

    UEFI Firmware Parser parses BIOS, Intel ME, and UEFI firmware structures including volumes, file systems, and files. Prior to 1.14, MakeTable() in uefi_firmware/compression/Tiano/Decompress.c does not validate that bit-length values read from a crafted Tiano or EFI compressed…