Oracle Linux 6167 Published by

An edk2 security update has been released for Oracle Linux 8.



El-errata: ELSA-2021-2591 Moderate: Oracle Linux 8 edk2 security update


Oracle Linux Security Advisory ELSA-2021-2591

  http://linux.oracle.com/errata/ELSA-2021-2591.html

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

x86_64:
edk2-ovmf-20200602gitca407c7246bf-4.el8_4.1.noarch.rpm

aarch64:
edk2-aarch64-20200602gitca407c7246bf-4.el8_4.1.noarch.rpm

SRPMS:
  http://oss.oracle.com/ol8/SRPMS-updates/edk2-20200602gitca407c7246bf-4.el8_4.1.src.rpm

Related CVEs:

CVE-2021-28211



Description of changes:

[20200602gitca407c7246bf-4.el8_4.1]
- edk2-MdeModulePkg-LzmaCustomDecompressLib-catch-4GB-uncom.patch [bz#1952953]
- Resolves: bz#1952953
(edk2: possible heap corruption with LzmaUefiDecompressGetInfo [rhel-8] [rhel-8.4.0.z])