CVE-2019-0160: Fedoraproject Fedora

Critical severity, CVSS 9.8. EPSS: 1.3% chance of exploitation in the next 30 days.

Buffer overflow in system firmware for EDK II may allow unauthenticated user to potentially enable escalation of privilege and/or denial of service via network access.

Affected products

  • Fedoraproject Fedora: version 30 only
  • Opensuse Leap: version 15.0 only
  • Red Hat Enterprise Linux: version 8.0 only
  • Red Hat Enterprise Linux Eus: version 8.1 only; version 8.2 only; version 8.4 only
  • Red Hat Enterprise Linux Server: version 7.0 only
  • Red Hat Enterprise Linux Server Aus: version 8.2 only; version 8.4 only
  • Red Hat Enterprise Linux Server Tus: version 8.2 only; version 8.4 only
  • Tianocore Edk Ii: affected versions not specified

Published 2019-03-27. Last modified 2026-06-17.