First published: Fri Jun 11 2021(Updated: )
An unlimited recursion in DxeCore in EDK II.
Credit: infosec@edk2.groups.io infosec@edk2.groups.io
Affected Software | Affected Version | How to fix |
---|---|---|
Tianocore EDK2 | <202008 | |
debian/edk2 | 2020.11-2+deb11u2 2022.11-6+deb12u1 2024.11-2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2021-28210.
The severity of CVE-2021-28210 is high with a score of 7.8.
The affected software for CVE-2021-28210 is Tianocore EDK2 version up to exclusive 202008.
CVE-2021-28210 is an unlimited recursion vulnerability in DxeCore in EDK II.
To fix CVE-2021-28210, it is recommended to update to a version of Tianocore EDK2 that is not affected by this vulnerability.