Oval Definition:oval:org.opensuse.security:def:82595
Revision Date:2021-06-22Version:1
Title:Security update for ovmf (Important)
Description:

This update for ovmf fixes the following issues:

- Fixed a possible buffer overflow in IScsiDxe (bsc#1186151) - CVE-2021-28211: ovmf: edk2: possible heap corruption with LzmaUefiDecompressGetInfo (bsc#1183578) - CVE-2021-28210: ovmf: unlimited FV recursion, round 2 (bsc#1183579) - CVE-2019-14584: ovmf,shim: NULL pointer dereference in AuthenticodeVerify() (bsc#1177789)
Family:unixClass:patch
Status:Reference(s):1177789
1183578
1183579
1186151
CVE-2019-14584
CVE-2021-28210
CVE-2021-28211
SUSE-SU-2021:2117-1
Platform(s):SUSE Linux Enterprise Server 12 SP2-BCL
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • ovmf-2015+git1462940744.321151f-19.23.1 is installed
  • OR ovmf-tools-2015+git1462940744.321151f-19.23.1 is installed
  • OR qemu-ovmf-x86_64-2015+git1462940744.321151f-19.23.1 is installed
  • BACK