Microsoft Security Response Center guidance
CBL-Mariner Releases
Vendor-listed releases
- 20230301gitf80f052277c8-39
- 1.0.1-3
- 20240524git3e722403cd16-1
Vulnerability intelligence
CVE-2024-1298 and is rated Medium severity with a CVSS score of 6.0. It is not in the current CISA KEV record we collected. That does not prove exploitation has not occurred.
CBL-Mariner Releases
EDK2 contains a vulnerability when S3 sleep is activated where an Attacker may cause a Division-By-Zero due to a UNIT32 overflow via local access. A successful exploit of this vulnerability may lead to a loss of Availability.