EDK2's Network Package is susceptible to a buffer overflow vulnerability when processing DNS Servers option from a DHCPv6 Advertise message. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Confidentiality, Integrity and/or Availability.
{
"binaries": [
{
"binary_version": "0~20180205.c0d9813c-2ubuntu0.3+esm2",
"binary_name": "ovmf"
},
{
"binary_version": "0~20180205.c0d9813c-2ubuntu0.3+esm2",
"binary_name": "qemu-efi"
},
{
"binary_version": "0~20180205.c0d9813c-2ubuntu0.3+esm2",
"binary_name": "qemu-efi-aarch64"
},
{
"binary_version": "0~20180205.c0d9813c-2ubuntu0.3+esm2",
"binary_name": "qemu-efi-arm"
}
]
}
{
"availability": "No subscription required",
"binaries": [
{
"binary_version": "0~20191122.bd85bf54-2ubuntu3.5",
"binary_name": "ovmf"
},
{
"binary_version": "0~20191122.bd85bf54-2ubuntu3.5",
"binary_name": "qemu-efi"
},
{
"binary_version": "0~20191122.bd85bf54-2ubuntu3.5",
"binary_name": "qemu-efi-aarch64"
},
{
"binary_version": "0~20191122.bd85bf54-2ubuntu3.5",
"binary_name": "qemu-efi-arm"
}
]
}
{
"availability": "No subscription required",
"binaries": [
{
"binary_version": "2022.02-3ubuntu0.22.04.2",
"binary_name": "ovmf"
},
{
"binary_version": "2022.02-3ubuntu0.22.04.2",
"binary_name": "ovmf-ia32"
},
{
"binary_version": "2022.02-3ubuntu0.22.04.2",
"binary_name": "qemu-efi"
},
{
"binary_version": "2022.02-3ubuntu0.22.04.2",
"binary_name": "qemu-efi-aarch64"
},
{
"binary_version": "2022.02-3ubuntu0.22.04.2",
"binary_name": "qemu-efi-arm"
}
]
}