PT-2025-11308 · Edk2+5 · Edk2+5

CVE-2025-2295

·

Published

2025-03-14

·

Updated

2026-06-24

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions: EDK2 (affected versions not specified)
Description: The issue is related to an Integer Overflow or Wraparound in the BIOS of EDK2, which can be triggered by a user through network means. A successful exploitation of this issue may lead to a denial of service.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this issue.

Exploit

Fix

DoS

Integer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

AZL-58803
AZL-58822
AZL-58828
BDU:2025-11907
CVE-2025-2295
GHSA-8522-69FH-W74X
OESA-2026-2772
OESA-2026-2773
OESA-2026-2774
OESA-2026-2775
USN-7894-1
USN-7894-2

Affected Products

Astra Linux
Debian
Edk2
Linuxmint
Red Os
Ubuntu