CVE-2021-38575 log
| Source |
|
| Severity | Medium |
| Remote | Yes |
| Type | Arbitrary code execution |
| Description | In EDK II before version 202108, a remotely exploitable buffer overflow has been found in the IScsiHexToBin() function. |
| Group | Package | Affected | Fixed | Severity | Status | Ticket |
|---|---|---|---|---|---|---|
| AVG-2382 | edk2-shell | 202105-1 | 202108-1 | Medium | Fixed |
| References |
|---|
https://bugzilla.tianocore.org/show_bug.cgi?id=3356 https://github.com/tianocore/edk2/pull/1698 |