[Git][security-tracker-team/security-tracker][master] Update information for CVE-2021-28216/edk2

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Apr 29 22:35:28 BST 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
098dfc04 by Salvatore Bonaccorso at 2022-04-29T23:34:45+02:00
Update information for CVE-2021-28216/edk2

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -73895,11 +73895,13 @@ CVE-2021-3437
 CVE-2021-3436 (BT: Possible to overwrite an existing bond during keys distribution ph ...)
 	NOT-FOR-US: Zephyr, different from src:zephyr
 CVE-2021-28216 (BootPerformanceTable pointer is read from an NVRAM variable in PEI. Re ...)
-	- edk2 <unfixed>
+	- edk2 2021.11~rc1-1
 	[bullseye] - edk2 <no-dsa> (Minor issue)
 	[buster] - edk2 <no-dsa> (Minor issue)
 	[stretch] - edk2 <no-dsa> (Minor issue)
 	NOTE: https://bugzilla.tianocore.org/show_bug.cgi?id=2957
+	NOTE: https://edk2.groups.io/g/devel/message/81743
+	NOTE: https://github.com/tianocore/edk2/commit/466ebdd2e0919c1538d03cd59833704bd5e1c028 (edk2-stable202111-rc1)
 CVE-2021-28215
 	RESERVED
 CVE-2021-28214



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/098dfc04d09d94cf0888abd3decf442acc1416da

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/098dfc04d09d94cf0888abd3decf442acc1416da
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220429/c74a4a3f/attachment.htm>


More information about the debian-security-tracker-commits mailing list