First published: Fri Jun 11 2021(Updated: )
Example EDK2 encrypted private key in the IpSecDxe.efi present potential security risks.
Credit: infosec@edk2.groups.io
Affected Software | Affected Version | How to fix |
---|---|---|
Tianocore EDK2 | =201905 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-28213 is a vulnerability that involves an example EDK2 encrypted private key in the IpSecDxe.efi, which presents potential security risks.
The Tianocore EDK2 software version 201905 is affected by CVE-2021-28213.
CVE-2021-28213 has a severity value of 7.5 (high).
To fix CVE-2021-28213, it is recommended to update to a patched version of the Tianocore EDK2 software.
You can find more information about CVE-2021-28213 in the following reference: [link](https://bugzilla.tianocore.org/show_bug.cgi?id=1866)