CVE-2021-28211
11.06.2021, 16:15
A heap overflow in LzmaUefiDecompressGetInfo function in EDK II.Enginsight
Awaiting analysis
This vulnerability is currently awaiting analysis.
Debian Releases
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||
|---|---|---|---|---|---|
| ovmf-201911 |
| ||||
| ovmf-202008 |
| ||||
| ovmf-202202 |
| ||||
| ovmf-202408 |
| ||||
| ovmf-tools-201911 |
| ||||
| ovmf-tools-202008 |
| ||||
| ovmf-tools-202202 |
| ||||
| ovmf-tools-202408 |
| ||||
| qemu-ovmf-x86_64-201911 |
| ||||
| qemu-ovmf-x86_64-202008 |
| ||||
| qemu-ovmf-x86_64-202202 |
| ||||
| qemu-ovmf-x86_64-202408 |
| ||||
| qemu-uefi-aarch64-201911 |
| ||||
| qemu-uefi-aarch64-202008 |
| ||||
| qemu-uefi-aarch64-202202 |
| ||||
| qemu-uefi-aarch64-202408 |
|
Red Hat Enterprise Linux Releases
Red Hat Product | |||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|
| edk2-aarch64 |
| ||||||||||
| edk2-ovmf |
|
Common Weakness Enumeration
- CWE-122 - Heap-based Buffer OverflowA heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().
- CWE-787 - Out-of-bounds WriteThe software writes data past the end, or before the beginning, of the intended buffer.