A stack buffer overflow was found in edk2 when the HII database contains a Bitmap who claims as 4-bit or 8-bit per pixel, but the palette contains more than 16(2^4) or 256(2^8) colors. Upstream issue: https://bugzilla.tianocore.org/show_bug.cgi?id=1135 References: https://lists.01.org/pipermail/edk2-devel/2019-March/037626.html
Created edk2 tracking bugs for this issue: Affects: epel-all [bug 1686785] Affects: fedora-all [bug 1686784]
Upstream patches: https://github.com/tianocore/edk2/commit/ffe5f7a6b4e978dffbe1df228963adc914451106 https://github.com/tianocore/edk2/commit/89910a39dcfd788057caa5d88b7e76e112d187b5
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Via RHSA-2019:2125 https://access.redhat.com/errata/RHSA-2019:2125
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2018-12181
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2019:3338 https://access.redhat.com/errata/RHSA-2019:3338