VendorsTianoCoreedk2202008
Vulnerabilities

TianoCore EDK II 202008

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2021-38576
A BIOS bug in firmware for a particular PC model leaves the Platform authorization value empty. This can be used to permanently brick the TPM in multiple ways, as well as to non-permanently DoS the system.
Published 2022-01-03 · Modified
7.8EPSS 0.012
CVE-2021-28211
A heap overflow in LzmaUefiDecompressGetInfo function in EDK II.
Published 2021-06-11 · Modified
6.7EPSS 0.004