RedHat: RHSA-2023-2165:01 Important: edk2 security, bug fix,
Summary
EDK (Embedded Development Kit) is a project to enable UEFI support for
Virtual Machines. This package contains a sample 64-bit UEFI firmware for
QEMU and KVM.
Security Fix(es):
* openssl: X.400 address type confusion in X.509 GeneralName
(CVE-2023-0286)
* edk2: integer underflow in SmmEntryPoint function leads to potential SMM
privilege escalation (CVE-2021-38578)
* openssl: timing attack in RSA Decryption implementation (CVE-2022-4304)
* openssl: double free after calling PEM_read_bio_ex (CVE-2022-4450)
* openssl: use-after-free following BIO_new_NDEF (CVE-2023-0215)
For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE
page(s) listed in the References section.
Additional Changes:
For detailed information on changes in this release, see the Red Hat
Enterprise Linux 9.2 Release Notes linked from the References section.
Summary
Solution
For details on how to apply this update, which includes the changes
described in this advisory, refer to:
https://access.redhat.com/articles/11258
References
https://access.redhat.com/security/cve/CVE-2021-38578 https://access.redhat.com/security/cve/CVE-2022-4304 https://access.redhat.com/security/cve/CVE-2022-4450 https://access.redhat.com/security/cve/CVE-2023-0215 https://access.redhat.com/security/cve/CVE-2023-0286 https://access.redhat.com/security/updates/classification/#important https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/9/html/9.2_release_notes/index
Package List
Red Hat Enterprise Linux AppStream (v. 9):
Source:
edk2-20221207gitfff6d81270b5-9.el9_2.src.rpm
noarch:
edk2-aarch64-20221207gitfff6d81270b5-9.el9_2.noarch.rpm
edk2-ovmf-20221207gitfff6d81270b5-9.el9_2.noarch.rpm
Red Hat Enterprise Linux CRB (v. 9):
aarch64:
edk2-debugsource-20221207gitfff6d81270b5-9.el9_2.aarch64.rpm
edk2-tools-20221207gitfff6d81270b5-9.el9_2.aarch64.rpm
edk2-tools-debuginfo-20221207gitfff6d81270b5-9.el9_2.aarch64.rpm
noarch:
edk2-aarch64-20221207gitfff6d81270b5-9.el9_2.noarch.rpm
edk2-ovmf-20221207gitfff6d81270b5-9.el9_2.noarch.rpm
edk2-tools-doc-20221207gitfff6d81270b5-9.el9_2.noarch.rpm
x86_64:
edk2-debugsource-20221207gitfff6d81270b5-9.el9_2.x86_64.rpm
edk2-tools-20221207gitfff6d81270b5-9.el9_2.x86_64.rpm
edk2-tools-debuginfo-20221207gitfff6d81270b5-9.el9_2.x86_64.rpm
These packages are GPG signed by Red Hat for security. Our key and
details on how to verify the signature are available from
https://access.redhat.com/security/team/key/
Topic
An update for edk2 is now available for Red Hat Enterprise Linux 9.Red Hat Product Security has rated this update as having a security impactof Important. A Common Vulnerability Scoring System (CVSS) base score,which gives a detailed severity rating, is available for each vulnerabilityfrom the CVE link(s) in the References section.
Topic
Relevant Releases Architectures
Red Hat Enterprise Linux AppStream (v. 9) - noarch
Red Hat Enterprise Linux CRB (v. 9) - aarch64, noarch, x86_64
Bugs Fixed
1960321 - CVE-2021-38578 edk2: integer underflow in SmmEntryPoint function leads to potential SMM privilege escalation
1983086 - Assertion failure when creating 1024 VCPU VM: [...]UefiCpuPkg/CpuMpPei/CpuBist.c(186): !EFI_ERROR (Status)
2125336 - Please add edk2-aarch64 and edk2-tools to CRB in RHEL 9
2132951 - edk2: Sort traditional virtualization builds before Confidential Computing builds
2157656 - [edk2] [aarch64] Unable to initialize EFI firmware when using edk2-aarch64-20221207gitfff6d81270b5-1.el9 in some hardwares
2162307 - Broken GRUB output on a serial console
2164440 - CVE-2023-0286 openssl: X.400 address type confusion in X.509 GeneralName
2164487 - CVE-2022-4304 openssl: timing attack in RSA Decryption implementation
2164492 - CVE-2023-0215 openssl: use-after-free following BIO_new_NDEF
2164494 - CVE-2022-4450 openssl: double free after calling PEM_read_bio_ex
2168046 - [edk2] BIOS Release Date string is unexpected length
2174605 - [EDK2] disable dynamic mmio window