Microsoft Security Response Center guidance
CBL-Mariner Releases
Vendor-listed releases
- 1.0.1-16
- 20240524git3e722403cd16-14
- 20230301gitf80f052277c8-45
Vulnerability intelligence
CVE-2025-2295 and is rated Low severity with a CVSS score of 3.5. It is not in the current CISA KEV record we collected. That does not prove exploitation has not occurred.
CBL-Mariner Releases
EDK2 contains a vulnerability in BIOS where a user may cause an Integer Overflow or Wraparound by network means. A successful exploitation of this vulnerability may lead to denial of service.