Lucene search

K
redhatcveRedhat.comRH:CVE-2018-12178
HistoryFeb 26, 2019 - 3:49 p.m.

CVE-2018-12178

2019-02-2615:49:47
redhat.com
access.redhat.com
10

0.004 Low

EPSS

Percentile

73.2%

A missing check leads to an out-of-bounds read and write flaw in NetworkPkg/DnsDxe as shipped in edk2, when it parses DNS responses. A remote attacker who controls the DNS server used by the vulnerable firmware may use this flaw to make the system crash.