概述
Important: edk2 security update
类型/严重性
Security Advisory: Important
标题
An update for edk2 is now available for Red Hat Enterprise Linux 9.2 Extended Update Support.
Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
描述
EDK (Embedded Development Kit) is a project to enable UEFI support for Virtual Machines. This package contains a sample 64-bit UEFI firmware for QEMU and KVM.
Security Fix(es):
- edk2: Buffer overflow in the DHCPv6 client via a long Server ID option (CVE-2023-45230)
- edk2: Buffer overflow when processing DNS Servers option in a DHCPv6 Advertise message (CVE-2023-45234)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
受影响的产品
-
Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.2 x86_64
-
Red Hat Enterprise Linux Server - AUS 9.2 x86_64
-
Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.2 aarch64
-
Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2 x86_64
-
Red Hat CodeReady Linux Builder for x86_64 - Extended Update Support 9.2 x86_64
-
Red Hat CodeReady Linux Builder for Power, little endian - Extended Update Support 9.2 ppc64le
-
Red Hat CodeReady Linux Builder for IBM z Systems - Extended Update Support 9.2 s390x
-
Red Hat CodeReady Linux Builder for ARM 64 - Extended Update Support 9.2 aarch64
-
Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.2 aarch64
-
Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.2 x86_64
-
Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 9.2 aarch64
修复
-
BZ - 2258685
- CVE-2023-45230 edk2: Buffer overflow in the DHCPv6 client via a long Server ID option
-
BZ - 2258697
- CVE-2023-45234 edk2: Buffer overflow when processing DNS Servers option in a DHCPv6 Advertise message
备注:
可能有这些软件包的更新版本。
点击软件包名称查看详情。
Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.2
| SRPM |
|
edk2-20221207gitfff6d81270b5-9.el9_2.2.src.rpm
|
SHA-256: 171a3dac6f2812c504b83720c7c5031ce120ab1f57eb1198a25a604268bd066f |
| x86_64 |
|
edk2-ovmf-20221207gitfff6d81270b5-9.el9_2.2.noarch.rpm
|
SHA-256: 86d1b5bc734225de047821a18e2e3501eb6c050fcb815e5b764ea5beb83d8454 |
Red Hat Enterprise Linux Server - AUS 9.2
| SRPM |
|
edk2-20221207gitfff6d81270b5-9.el9_2.2.src.rpm
|
SHA-256: 171a3dac6f2812c504b83720c7c5031ce120ab1f57eb1198a25a604268bd066f |
| x86_64 |
|
edk2-ovmf-20221207gitfff6d81270b5-9.el9_2.2.noarch.rpm
|
SHA-256: 86d1b5bc734225de047821a18e2e3501eb6c050fcb815e5b764ea5beb83d8454 |
Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.2
| SRPM |
|
edk2-20221207gitfff6d81270b5-9.el9_2.2.src.rpm
|
SHA-256: 171a3dac6f2812c504b83720c7c5031ce120ab1f57eb1198a25a604268bd066f |
| aarch64 |
|
edk2-aarch64-20221207gitfff6d81270b5-9.el9_2.2.noarch.rpm
|
SHA-256: 15cdc52d641aa9f60c4dc0dafc504a294f51e5a1007432d83505a6b1878ce6d8 |
Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2
| SRPM |
|
edk2-20221207gitfff6d81270b5-9.el9_2.2.src.rpm
|
SHA-256: 171a3dac6f2812c504b83720c7c5031ce120ab1f57eb1198a25a604268bd066f |
| x86_64 |
|
edk2-ovmf-20221207gitfff6d81270b5-9.el9_2.2.noarch.rpm
|
SHA-256: 86d1b5bc734225de047821a18e2e3501eb6c050fcb815e5b764ea5beb83d8454 |
Red Hat CodeReady Linux Builder for x86_64 - Extended Update Support 9.2
| SRPM |
| x86_64 |
|
edk2-aarch64-20221207gitfff6d81270b5-9.el9_2.2.noarch.rpm
|
SHA-256: 15cdc52d641aa9f60c4dc0dafc504a294f51e5a1007432d83505a6b1878ce6d8 |
|
edk2-debugsource-20221207gitfff6d81270b5-9.el9_2.2.x86_64.rpm
|
SHA-256: 045a227a9bb097509bd06e970112097df7377ac5f62c1c7812f48c93f251ca9b |
|
edk2-tools-20221207gitfff6d81270b5-9.el9_2.2.x86_64.rpm
|
SHA-256: 05537af10d8d320775209c1bac3172b1db827b4aefafdfa6f72cd92787b9a7c1 |
|
edk2-tools-debuginfo-20221207gitfff6d81270b5-9.el9_2.2.x86_64.rpm
|
SHA-256: 22ab0f86bc08d63ace0671c6d627927366d79ab5102b0f9adf99987606de1353 |
|
edk2-tools-doc-20221207gitfff6d81270b5-9.el9_2.2.noarch.rpm
|
SHA-256: 0b2da8bdaad4c380a1e8077e248186daa72c681f585e807735b0f5c16f39e9b9 |
Red Hat CodeReady Linux Builder for Power, little endian - Extended Update Support 9.2
| SRPM |
| ppc64le |
|
edk2-aarch64-20221207gitfff6d81270b5-9.el9_2.2.noarch.rpm
|
SHA-256: 15cdc52d641aa9f60c4dc0dafc504a294f51e5a1007432d83505a6b1878ce6d8 |
|
edk2-ovmf-20221207gitfff6d81270b5-9.el9_2.2.noarch.rpm
|
SHA-256: 86d1b5bc734225de047821a18e2e3501eb6c050fcb815e5b764ea5beb83d8454 |
Red Hat CodeReady Linux Builder for IBM z Systems - Extended Update Support 9.2
| SRPM |
| s390x |
|
edk2-aarch64-20221207gitfff6d81270b5-9.el9_2.2.noarch.rpm
|
SHA-256: 15cdc52d641aa9f60c4dc0dafc504a294f51e5a1007432d83505a6b1878ce6d8 |
|
edk2-ovmf-20221207gitfff6d81270b5-9.el9_2.2.noarch.rpm
|
SHA-256: 86d1b5bc734225de047821a18e2e3501eb6c050fcb815e5b764ea5beb83d8454 |
Red Hat CodeReady Linux Builder for ARM 64 - Extended Update Support 9.2
| SRPM |
| aarch64 |
|
edk2-debugsource-20221207gitfff6d81270b5-9.el9_2.2.aarch64.rpm
|
SHA-256: 839b09a07a9714812c31c00f7d3fc384cc0a6877be253a3a451cf5945f2f8ab1 |
|
edk2-ovmf-20221207gitfff6d81270b5-9.el9_2.2.noarch.rpm
|
SHA-256: 86d1b5bc734225de047821a18e2e3501eb6c050fcb815e5b764ea5beb83d8454 |
|
edk2-tools-20221207gitfff6d81270b5-9.el9_2.2.aarch64.rpm
|
SHA-256: 6b5cc1372956b9da739ffd1a387d4242fef2b59ebf4a19bb168295851356203d |
|
edk2-tools-debuginfo-20221207gitfff6d81270b5-9.el9_2.2.aarch64.rpm
|
SHA-256: c12fc2c3eb51dbafbd7462c2977a7d42ed5af0f3c6a6262d04fec603d685edea |
|
edk2-tools-doc-20221207gitfff6d81270b5-9.el9_2.2.noarch.rpm
|
SHA-256: 0b2da8bdaad4c380a1e8077e248186daa72c681f585e807735b0f5c16f39e9b9 |
Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.2
| SRPM |
|
edk2-20221207gitfff6d81270b5-9.el9_2.2.src.rpm
|
SHA-256: 171a3dac6f2812c504b83720c7c5031ce120ab1f57eb1198a25a604268bd066f |
| aarch64 |
|
edk2-aarch64-20221207gitfff6d81270b5-9.el9_2.2.noarch.rpm
|
SHA-256: 15cdc52d641aa9f60c4dc0dafc504a294f51e5a1007432d83505a6b1878ce6d8 |
Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.2
| SRPM |
|
edk2-20221207gitfff6d81270b5-9.el9_2.2.src.rpm
|
SHA-256: 171a3dac6f2812c504b83720c7c5031ce120ab1f57eb1198a25a604268bd066f |
| x86_64 |
|
edk2-ovmf-20221207gitfff6d81270b5-9.el9_2.2.noarch.rpm
|
SHA-256: 86d1b5bc734225de047821a18e2e3501eb6c050fcb815e5b764ea5beb83d8454 |
Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 9.2
| SRPM |
|
edk2-20221207gitfff6d81270b5-9.el9_2.2.src.rpm
|
SHA-256: 171a3dac6f2812c504b83720c7c5031ce120ab1f57eb1198a25a604268bd066f |
| aarch64 |
|
edk2-aarch64-20221207gitfff6d81270b5-9.el9_2.2.noarch.rpm
|
SHA-256: 15cdc52d641aa9f60c4dc0dafc504a294f51e5a1007432d83505a6b1878ce6d8 |