The vendor explicitly states that these products are not affected by this CVE.
- edk2-aarch64 as a component of Red Hat Enterprise Linux 10
- edk2-ovmf as a component of Red Hat Enterprise Linux 10
- edk2-tools as a component of Red Hat Enterprise Linux 10
- edk2-tools-doc as a component of Red Hat Enterprise Linux 10
- edk2.src as a component of Red Hat Enterprise Linux 10
- edk2-aarch64 as a component of Red Hat Enterprise Linux 8
- edk2-ovmf as a component of Red Hat Enterprise Linux 8
- edk2.src as a component of Red Hat Enterprise Linux 8
- edk2-aarch64 as a component of Red Hat Enterprise Linux 9
- edk2-ovmf as a component of Red Hat Enterprise Linux 9
- edk2-tools as a component of Red Hat Enterprise Linux 9
- edk2-tools-doc as a component of Red Hat Enterprise Linux 9
- Summary
- A flaw was found in edk2. This vulnerability allows bypass of Secure Boot (Unified Extensible Firmware Interface) constraints via accidentally allowing the UEFI Shell to be accessed in Secure Boot environments.
- Remediation
- No remediation text is recorded.
