6.8
CVSSv2

CVE-2021-38575

Published: 01/12/2021 Updated: 07/11/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.1 | Impact Score: 5.9 | Exploitability Score: 2.2
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

NetworkPkg/IScsiDxe has remotely exploitable buffer overflows.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

tianocore edk2

insyde kernel 5.0

insyde kernel 5.2

insyde kernel 5.3

insyde kernel 5.4

insyde kernel 5.5

insyde kernel 5.1

Vendor Advisories

In EDK II before version 202108, a remotely exploitable buffer overflow has been found in the IScsiHexToBin() function ...