In EDK II, a vulnerability exists in TianoCompress.c (BaseTools/Source/C/TianoCompress) from github/tianocore/edk2. An authenticated attacker could exploit this via a crafted file to escalate privileges.
Created edk2 tracking bugs for this issue:
Affects: epel-all [bug 1641444]
Affects: fedora-all [bug 1641443]
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2019:2125 https://access.redhat.com/errata/RHSA-2019:2125
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):