CVE Vulnerabilities

CVE-2025-3770

Protection Mechanism Failure

Published: Aug 07, 2025 | Modified: Aug 07, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

EDK2 contains a vulnerability in BIOS where an attacker may cause “Protection Mechanism Failure” by local access. Successful exploitation of this vulnerability will lead to arbitrary code execution and impact Confidentiality, Integrity, and Availability.

Weakness

The product does not use or incorrectly uses a protection mechanism that provides sufficient defense against directed attacks against the product.

Affected Software

NameVendorStart VersionEnd Version
Edk2Ubuntudevel*
Edk2Ubuntujammy*
Edk2Ubuntunoble*
Edk2Ubuntuplucky*
Edk2Ubuntuquesting*
Edk2Ubuntuupstream*

References