EDK II is a modern, feature-rich, cross-platform firmware development environment for the UEFI and PI specifications.
Security Fix(es):
An insecure default to allow UEFI Shell in EDK2 was left enabled in LXD. This allows an OS-resident attacker to bypass Secure Boot.(CVE-2023-49721)
{
"severity": "Medium"
}{
"aarch64": [
"edk2-debuginfo-202308-49.oe2403sp3.aarch64.rpm",
"edk2-debugsource-202308-49.oe2403sp3.aarch64.rpm",
"edk2-devel-202308-49.oe2403sp3.aarch64.rpm"
],
"noarch": [
"edk2-aarch64-202308-49.oe2403sp3.noarch.rpm",
"edk2-help-202308-49.oe2403sp3.noarch.rpm",
"edk2-ovmf-202308-49.oe2403sp3.noarch.rpm",
"python3-edk2-devel-202308-49.oe2403sp3.noarch.rpm"
],
"src": [
"edk2-202308-49.oe2403sp3.src.rpm"
],
"x86_64": [
"edk2-debuginfo-202308-49.oe2403sp3.x86_64.rpm",
"edk2-debugsource-202308-49.oe2403sp3.x86_64.rpm",
"edk2-devel-202308-49.oe2403sp3.x86_64.rpm"
]
}