File _patchinfo of Package patchinfo.10547
<patchinfo incident="10547">
<issue tracker="bnc" id="1130267">VUL-0: CVE-2019-0160: ovmf,OVMF: edk2: buffer overflows in PartitionDxe and UdfDxe with long file names and invalid UDF media</issue>
<issue tracker="bnc" id="1128503">VUL-0: CVE-2018-12181: edk2: Stack buffer overflow with corrupted BMP</issue>
<issue tracker="cve" id="2019-0160"/>
<issue tracker="cve" id="2018-12181"/>
<category>security</category>
<rating>moderate</rating>
<packager>gary_lin</packager>
<description>This update for ovmf fixes the following issues:
Security issues fixed:
- CVE-2019-0160: Fixed multiple buffer overflows in UDF-related codes in MdeModulePkg\Universal\Disk\PartitionDxe\Udf.c
and MdeModulePkg\Universal\Disk\UdfDxe (bsc#1130267).
- CVE-2018-12181: Fixed a stack buffer overflow in the HII database when a corrupted Bitmap was used (bsc#1128503).
</description>
<summary>Security update for ovmf</summary>
</patchinfo>