Related Vulnerabilities: CVE-2021-28210  

A security issue was found in EDK II before version 202011. An unlimited FV parsing recursion could lead to denial of service.

Severity Low

Remote No

Type Denial of service

Description

A security issue was found in EDK II before version 202011. An unlimited FV parsing recursion could lead to denial of service.

AVG-1697 edk2-shell 202008-1 202011-1 Medium Fixed

https://bugzilla.tianocore.org/show_bug.cgi?id=1743
https://github.com/tianocore/edk2/pull/1137
https://github.com/tianocore/edk2/commit/47343af30435302c087027177613412a1a83e919