{
  "threat_severity" : "Important",
  "public_date" : "2021-06-08T00:00:00Z",
  "bugzilla" : {
    "description" : "edk2: remote buffer overflow in IScsiHexToBin function in NetworkPkg/IScsiDxe",
    "id" : "1956284",
    "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=1956284"
  },
  "cvss3" : {
    "cvss3_base_score" : "8.1",
    "cvss3_scoring_vector" : "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H",
    "status" : "verified"
  },
  "cwe" : "CWE-119",
  "details" : [ "NetworkPkg/IScsiDxe has remotely exploitable buffer overflows.", "A flaw was found in edk2. Missing checks in the IScsiHexToBin function in NetworkPkg/IScsiDxe lead to a buffer overflow allowing a remote attacker, who can inject himself in the communication between edk2 and the iSCSI target, to write arbitrary data to any address in the edk2 firmware and potentially execute code. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability." ],
  "acknowledgement" : "This issue was discovered by Laszlo Ersek (Red Hat).",
  "affected_release" : [ {
    "product_name" : "Red Hat Enterprise Linux 8",
    "release_date" : "2021-08-10T00:00:00Z",
    "advisory" : "RHSA-2021:3066",
    "cpe" : "cpe:/a:redhat:enterprise_linux:8",
    "package" : "edk2-0:20200602gitca407c7246bf-4.el8_4.2"
  }, {
    "product_name" : "Red Hat Enterprise Linux 8.1 Extended Update Support",
    "release_date" : "2021-08-17T00:00:00Z",
    "advisory" : "RHSA-2021:3172",
    "cpe" : "cpe:/a:redhat:rhel_eus:8.1",
    "package" : "edk2-0:20190308git89910a39dcfd-6.el8_1.1"
  }, {
    "product_name" : "Red Hat Enterprise Linux 8.2 Extended Update Support",
    "release_date" : "2021-08-31T00:00:00Z",
    "advisory" : "RHSA-2021:3369",
    "cpe" : "cpe:/a:redhat:rhel_eus:8.2",
    "package" : "edk2-0:20190829git37eef91017ad-9.el8_2.1"
  }, {
    "product_name" : "Red Hat Virtualization 4 for Red Hat Enterprise Linux 8",
    "release_date" : "2021-08-19T00:00:00Z",
    "advisory" : "RHSA-2021:3235",
    "cpe" : "cpe:/o:redhat:rhev_hypervisor:4.4::el8",
    "package" : "redhat-virtualization-host-0:4.4.7-20210804.0.el8_4"
  } ],
  "package_state" : [ {
    "product_name" : "Red Hat Enterprise Linux 7",
    "fix_state" : "Affected",
    "package_name" : "ovmf",
    "cpe" : "cpe:/o:redhat:enterprise_linux:7"
  }, {
    "product_name" : "Red Hat Enterprise Linux 9",
    "fix_state" : "Not affected",
    "package_name" : "edk2",
    "cpe" : "cpe:/o:redhat:enterprise_linux:9"
  } ],
  "references" : [ "https://www.cve.org/CVERecord?id=CVE-2021-38575\nhttps://nvd.nist.gov/vuln/detail/CVE-2021-38575" ],
  "name" : "CVE-2021-38575",
  "csaw" : false
}