FlawAtlas
Search the atlas
UBUNTU-CVE-2025-3770 High

UBUNTU-CVE-2025-3770

EDK2 contains a vulnerability in BIOS where an attacker may cause “Protection Mechanism Failure” by local access. Successful exploitation of this vulnerability will lead to arbitrary code execution and impact Confidentiality, Integrity, and Availability.

Exploit probability Not scored
Published August 7, 2025
Required by Not available
Last source change May 20, 2026

02 / AFFECTED SOFTWARE

Affected packages

Ubuntu:20.04:LTS edk2

15 explicit affected versions

Ubuntu:22.04:LTS edk2

13 explicit affected versions

Ubuntu:24.04:LTS edk2

13 explicit affected versions

Ubuntu:25.10 edk2

4 explicit affected versions

Ubuntu:26.04:LTS edk2
Ubuntu:Pro:16.04:LTS edk2

7 explicit affected versions

Ubuntu:Pro:18.04:LTS edk2

12 explicit affected versions

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities UBUNTU-CVE-2025-3770

EDK2 contains a vulnerability in BIOS where an attacker may cause “Protection Mechanism Failure” by local access. Successful exploitation of this vulnerability will lead to arbitrary code execution and impact Confidentiality, Integrity, and Availability.

View original source

05 / REFERENCES

Further evidence