CVE 5.1 MEDIUM

An Out-of-bounds Write in CloverHackyColor/CloverBootloader_CVE-2026-24795

5.1 / 10
MEDIUM
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:L/S:N/AU:Y/R:U/V:C/RE:L/U:Amber

Description

Out-of-bounds Write vulnerability in CloverHackyColor CloverBootloader (MdeModulePkg/Universal/RegularExpressionDxe/Oniguruma modules). This vulnerability is associated with program files regcomp.C.

This issue affects CloverBootloader: before 5162.

Basic Information

ID CVE-2026-24795
Source GovTech CSG
Published Jan 27, 2026 at 08:23

Affected Product

Vendor CloverHackyColor
Product CloverBootloader
Affected Versions CloverHackyColor CloverBootloader 0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.