CVE-2019-14584: Tianocore EDK2

High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.

Null pointer dereference in Tianocore EDK2 may allow an authenticated user to potentially enable escalation of privilege via local access.

Affected products

  • Tianocore EDK2: before 2020-10-21 (fixed in 2020-10-21)

Published 2021-06-03. Last modified 2026-06-17.