TT 脆弱性 Blog

脆弱性情報に関する「個人」の調査・研究のログ

UEFIcanhazbufferoverflow / CVE-2024-0762 (まとめ)

【ニュース】

◆Researchers Uncover UEFI Vulnerability Affecting Multiple Intel CPUs (The Hacker News, 2024/06/20)
[複数のインテルCPUに影響を及ぼすUEFIの脆弱性を発見]
https://thehackernews.com/2024/06/researchers-uncover-uefi-vulnerability.html
https://vul.hatenadiary.com/entry/2024/06/20/000000

◆Phoenix製「UEFI」に脆弱性 - TPM保護を回避されるおそれ (Security NEXT, 2024/06/24)
https://www.security-next.com/158794
https://vul.hatenadiary.com/entry/2024/06/24/000000


【ブログ】

◆UEFICANHAZBUFFEROVERFLOW: WIDESPREAD IMPACT FROM VULNERABILITY IN POPULAR PC AND SERVER FIRMWARE (Eclypsium, 2024/06/24)
[UEFIcanhazbufferoverflow:一般的なPCとサーバーのファームウェアに存在する脆弱性による広範な影響]
https://eclypsium.com/blog/ueficanhazbufferoverflow-widespread-impact-from-vulnerability-in-popular-pc-and-server-firmware/
https://vul.hatenadiary.com/entry/2024/06/20/000000_1


【公開情報】

◆Phoenix Technologies Buffer Overflow Vulnerability in TPM Configuration (Phoenix, 2024/05/14)
[フェニックス・テクノロジーズ、TPM設定にバッファオーバーフローの脆弱性]
https://www.phoenix.com/security-notifications/cve-2024-0762/
https://vul.hatenadiary.com/entry/2024/05/14/000000


【検索】

■Google

google: UEFIcanhazbufferoverflow
google: CVE-2024-0762

google:news: UEFIcanhazbufferoverflow
google:news: CVE-2024-0762

google: site:virustotal.com UEFIcanhazbufferoverflow
google: site:virustotal.com CVE-2024-0762

google: site:github.com UEFIcanhazbufferoverflow
google: site:github.com CVE-2024-0762


■Bing

https://www.bing.com/search?q=UEFIcanhazbufferoverflow
https://www.bing.com/search?q=CVE-2024-0762

https://www.bing.com/news/search?q=UEFIcanhazbufferoverflow
https://www.bing.com/news/search?q=CVE-2024-0762


■Twitter

https://twitter.com/search?q=%23UEFIcanhazbufferoverflow
https://twitter.com/search?q=%23CVE-2024-0762

https://twitter.com/hashtag/UEFIcanhazbufferoverflow
https://twitter.com/hashtag/CVE-2024-0762


■Exploit Code / PoC

https://www.exploit-db.com/search?q=UEFIcanhazbufferoverflow
https://www.exploit-db.com/search?q=CVE-2024-0762

https://attackerkb.com/search?q=UEFIcanhazbufferoverflow
https://attackerkb.com/search?q=CVE-2024-0762


Copyright (C) 谷川哲司 (Tetsuji Tanigawa) 2006 - 2022