CVE Vulnerabilities

CVE-2021-28213

Published: Jun 11, 2021 | Modified: Nov 21, 2024
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
7.5 MODERATE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Ubuntu
LOW

Example EDK2 encrypted private key in the IpSecDxe.efi present potential security risks.

Affected Software

Name Vendor Start Version End Version
Edk2 Tianocore 201905 (including) 201905 (including)
Edk2 Ubuntu bionic *
Edk2 Ubuntu groovy *
Edk2 Ubuntu trusty *
Edk2 Ubuntu xenial *

References