CVE-2021-38575
published 2021-12-01CVE-2021-38575: NetworkPkg/IScsiDxe has remotely exploitable buffer overflows.
PriorityP343high8.1CVSS 3.1
AVNACHPRNUINSUCHIHAH
EPSS
1.85%
76.7th percentile
NetworkPkg/IScsiDxe has remotely exploitable buffer overflows.
Affected
18 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | edk2 | < edk2 2021.08-1 (bookworm) | edk2 2021.08-1 (bookworm) |
| insyde | kernel | — | — |
| insyde | kernel | — | — |
| insyde | kernel | — | — |
| insyde | kernel | — | — |
| insyde | kernel | — | — |
| insyde | kernel | — | — |
| tianocore | edk2 | <= 202105 | — |
| tianocore | edk2 | >= 0 < 2020.11-2+deb11u3 | 2020.11-2+deb11u3 |
| tianocore | edk2 | >= 0 < 2021.08-1 | 2021.08-1 |
| tianocore | edk2 | >= 0 < 2021.08-1 | 2021.08-1 |
| tianocore | edk2 | >= 0 < 2021.08-1 | 2021.08-1 |
| tianocore | edk2 | >= 0 < 0~20191122.bd85bf54-2ubuntu3.3 | 0~20191122.bd85bf54-2ubuntu3.3 |
| tianocore | edk2 | >= 0 < 0~20191122.bd85bf54-2ubuntu3.6 | 0~20191122.bd85bf54-2ubuntu3.6 |
| tianocore | edk2 | >= 0 < 2022.02-3ubuntu0.22.04.3 | 2022.02-3ubuntu0.22.04.3 |
| tianocore | edk2 | >= 0 < 0~20160408.ffea0a2c-2ubuntu0.2+esm3 | 0~20160408.ffea0a2c-2ubuntu0.2+esm3 |
| tianocore | edk2 | >= 0 < 0~20180205.c0d9813c-2ubuntu0.3+esm2 | 0~20180205.c0d9813c-2ubuntu0.3+esm2 |
| tianocore | edk_ii | unspecified – edk2-stable202105 | — |
CVSS provenance
nvdv3.18.1HIGHCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv8.1HIGH
vendor_debian8.1HIGH
vendor_redhat8.1HIGH
vendor_ubuntu6.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
edk2 vulnerabilities
osv·2024-10-10·CVSS 5.5
CVE-2019-0161 [MEDIUM] edk2 vulnerabilities
edk2 vulnerabilities
It was discovered that EDK II did not check the buffer length in XHCI,
which could lead to a stack overflow. A local attacker could potentially
use this issue to cause a denial of service. This issue only affected
Ubuntu 16.04 LTS and Ubuntu 18.04 LTS. (CVE-2019-0161)
Laszlo Ersek discovered that EDK II incorrectly handled recursion. A
remote attacker could possibly use this issue to cause EDK II to consume
resources, leading to a denial of service. This issue only affected
Ubuntu 16.04 LTS and Ubuntu 18.04 LTS. (CVE-2021-28210)
Satoshi Tanda discovered that EDK II incorrectly handled decompressing
certain images. A remote attacker could use this issue to cause EDK II to
crash, resulting in a denial of service, or possibly execute arbitrary
code. This issue only aff
GHSA
GHSA-7cjm-mv56-4mg4: NetworkPkg/IScsiDxe has remotely exploitable buffer overflows
ghsa_unreviewed·2021-12-02
CVE-2021-38575 [CRITICAL] CWE-119 GHSA-7cjm-mv56-4mg4: NetworkPkg/IScsiDxe has remotely exploitable buffer overflows
NetworkPkg/IScsiDxe has remotely exploitable buffer overflows.
OSV
CVE-2021-38575: NetworkPkg/IScsiDxe has remotely exploitable buffer overflows
osv·2021-12-01·CVSS 8.1
CVE-2021-38575 [HIGH] CVE-2021-38575: NetworkPkg/IScsiDxe has remotely exploitable buffer overflows
NetworkPkg/IScsiDxe has remotely exploitable buffer overflows.
OSV
edk2 vulnerabilities
osv·2021-09-23·CVSS 6.8
CVE-2019-11098 [MEDIUM] edk2 vulnerabilities
edk2 vulnerabilities
It was discovered that EDK II incorrectly handled input validation in
MdeModulePkg. A local user could possibly use this issue to cause EDK II to
crash, resulting in a denial of service, obtain sensitive information or
execute arbitrary code. (CVE-2019-11098)
Paul Kehrer discovered that OpenSSL used in EDK II incorrectly handled
certain input lengths in EVP functions. An attacker could possibly use this
issue to cause EDK II to crash, resulting in a denial of service.
(CVE-2021-23840)
Ingo Schwarze discovered that OpenSSL used in EDK II incorrectly handled
certain ASN.1 strings. An attacker could use this issue to cause EDK II to
crash, resulting in a denial of service, or possibly obtain sensitive
information. (CVE-2021-3712)
It was discovered that EDK II incorrec
Ubuntu
EDK II vulnerabilities
vendor_ubuntu·2024-10-10·CVSS 5.5
CVE-2021-38578 [MEDIUM] EDK II vulnerabilities
Title: EDK II vulnerabilities
Summary: Several security issues were fixed in EDK II.
It was discovered that EDK II did not check the buffer length in XHCI,
which could lead to a stack overflow. A local attacker could potentially
use this issue to cause a denial of service. This issue only affected
Ubuntu 16.04 LTS and Ubuntu 18.04 LTS. (CVE-2019-0161)
Laszlo Ersek discovered that EDK II incorrectly handled recursion. A
remote attacker could possibly use this issue to cause EDK II to consume
resources, leading to a denial of service. This issue only affected
Ubuntu 16.04 LTS and Ubuntu 18.04 LTS. (CVE-2021-28210)
Satoshi Tanda discovered that EDK II incorrectly handled decompressing
certain images. A remote attacker could use this issue to cause EDK II to
crash, resulting in a denial of
Ubuntu
EDK II vulnerabilities
vendor_ubuntu·2021-09-23·CVSS 6.8
CVE-2019-11098 [MEDIUM] EDK II vulnerabilities
Title: EDK II vulnerabilities
Summary: Several security issues were fixed in EDK II.
It was discovered that EDK II incorrectly handled input validation in
MdeModulePkg. A local user could possibly use this issue to cause EDK II to
crash, resulting in a denial of service, obtain sensitive information or
execute arbitrary code. (CVE-2019-11098)
Paul Kehrer discovered that OpenSSL used in EDK II incorrectly handled
certain input lengths in EVP functions. An attacker could possibly use this
issue to cause EDK II to crash, resulting in a denial of service.
(CVE-2021-23840)
Ingo Schwarze discovered that OpenSSL used in EDK II incorrectly handled
certain ASN.1 strings. An attacker could use this issue to cause EDK II to
crash, resulting in a denial of service, or possibly obtain sensitive
inf
Red Hat
edk2: remote buffer overflow in IScsiHexToBin function in NetworkPkg/IScsiDxe
vendor_redhat·2021-06-08·CVSS 8.1
CVE-2021-38575 [HIGH] CWE-119 edk2: remote buffer overflow in IScsiHexToBin function in NetworkPkg/IScsiDxe
edk2: remote buffer overflow in IScsiHexToBin function in NetworkPkg/IScsiDxe
NetworkPkg/IScsiDxe has remotely exploitable buffer overflows.
A flaw was found in edk2. Missing checks in the IScsiHexToBin function in NetworkPkg/IScsiDxe lead to a buffer overflow allowing a remote attacker, who can inject himself in the communication between edk2 and the iSCSI target, to write arbitrary data to any address in the edk2 firmware and potentially execute code. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
Package: ovmf (Red Hat Enterprise Linux 7) - Affected
Package: edk2 (Red Hat Enterprise Linux 9) - Not affected
Debian
CVE-2021-38575: edk2 - NetworkPkg/IScsiDxe has remotely exploitable buffer overflows.
vendor_debian·2021·CVSS 8.1
CVE-2021-38575 [HIGH] CVE-2021-38575: edk2 - NetworkPkg/IScsiDxe has remotely exploitable buffer overflows.
NetworkPkg/IScsiDxe has remotely exploitable buffer overflows.
Scope: local
bookworm: resolved (fixed in 2021.08-1)
bullseye: resolved (fixed in 2020.11-2+deb11u3)
forky: resolved (fixed in 2021.08-1)
sid: resolved (fixed in 2021.08-1)
trixie: resolved (fixed in 2021.08-1)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2021-12-01
Published