Dasharo / dasharo-issues

The Dasharo issue tracker
https://dasharo.com/
24 stars 0 forks source link

CVE-2024-0762 #951

Open username34579 opened 1 month ago

username34579 commented 1 month ago

hi! Tell me please, laptops with coreboot can be attacked by new malwares Black Lotus and Logofail?

CVE-2024-0762 https://eclypsium.com/blog/ueficanhazbufferoverflow-widespread-impact-from-vulnerability-in-popular-pc-and-server-firmware/

CVE-2023-40238 https://nvd.nist.gov/vuln/detail/CVE-2023-40238

If coreboot is not susceptible to this attacks, then for what reasoned reasons and is there relevant research and evidence for this?

pietrushnic commented 1 month ago

Potentially partial duplicate of https://github.com/Dasharo/dasharo-issues/issues/615