ELSA-2026-2776

ELSA-2026-2776 - edk2 security update

Type:SECURITY
Impact:MODERATE
Release Date:2026-02-17

Description


[20241117-4.0.1.el9_7.3]
- Replace upstream references [Orabug:36569119]

[20241117-4.el9_7.3]
- edk2-OvmfPkg-MemEncryptSevLib-Evict-cache-lines-during-SN.patch [RHEL-125104]
- edk2-MdePkg-Add-the-COHERENCY_SFW_NO-CPUID-bit-field.patch [RHEL-125104]
- edk2-OvmfPkg-ResetVector-Make-ReceivedVc-a-flag-in-SEV-ES.patch [RHEL-125104]
- edk2-OvmfPkg-MemEncryptSevLib-Check-if-SEV-SNP-coherency-.patch [RHEL-125104]
- edk2-openssl-flatten-contents-of-openssl-tarball.patch [RHEL-115923]
- edk2-Bumped-openssl-submodule-to-version-3.0.7-29.1.patch [RHEL-115923]
- Resolves: RHEL-125104
([edk2] VM panic on booting SNP guest with large memory on Genoa [rhel-9.7.z])
- Resolves: RHEL-115923
(CVE-2025-9230 edk2: Out-of-bounds read & write in RFC 3211 KEK Unwrap [rhel-9.7.z])

[20241117-4.el9_7.2]
- edk2-OvmfPkg-IoMmuDxe-Fix-1M-and-2M-buffer-handling.patch [RHEL-121875]
- Resolves: RHEL-121875
(Fail to create AMD SEV SLES 15 SP4 guest via virt-install --cdrom [rhel-9.7.z])

[20241117-4.el9_7.1]
- edk2-OvmfPkg-IoMmuDxe-Fix-1M-and-2M-buffer-handling.patch [RHEL-121875]
- Resolves: RHEL-121875
(Fail to create AMD SEV SLES 15 SP4 guest via virt-install --cdrom [rhel-9.7.z])


Related CVEs


CVE-2025-9230

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) edk2-20241117-4.0.1.el9_7.3.src.rpmafa2772a4be8af5a7e1f2e8363ab080fa441be6761bf76c98cf0dc69fd1673f5-ol9_aarch64_appstream
edk2-20241117-4.0.1.el9_7.3.src.rpmafa2772a4be8af5a7e1f2e8363ab080fa441be6761bf76c98cf0dc69fd1673f5-ol9_aarch64_codeready_builder
edk2-aarch64-20241117-4.0.1.el9_7.3.noarch.rpm0628a9244a5085bddda1af606a463e18d3113f2ef69c81d17c109308ed30a893-ol9_aarch64_appstream
edk2-ovmf-20241117-4.0.1.el9_7.3.noarch.rpm92d72b66b7c60954e337a199a7b673f50854f5405896658dedab4b925dabfb6c-ol9_aarch64_appstream
edk2-tools-20241117-4.0.1.el9_7.3.aarch64.rpm6636428ad6da8567b5e237763a660fb30b393bfb6548491bd8f77809a9db975c-ol9_aarch64_codeready_builder
edk2-tools-doc-20241117-4.0.1.el9_7.3.noarch.rpm8adae9a64c0b37dbbbe74836bcceac2df6739fa017172f98f5bbd5a0d8039a7f-ol9_aarch64_codeready_builder
Oracle Linux 9 (x86_64) edk2-20241117-4.0.1.el9_7.3.src.rpmafa2772a4be8af5a7e1f2e8363ab080fa441be6761bf76c98cf0dc69fd1673f5-ol9_x86_64_appstream
edk2-20241117-4.0.1.el9_7.3.src.rpmafa2772a4be8af5a7e1f2e8363ab080fa441be6761bf76c98cf0dc69fd1673f5-ol9_x86_64_codeready_builder
edk2-aarch64-20241117-4.0.1.el9_7.3.noarch.rpm0628a9244a5085bddda1af606a463e18d3113f2ef69c81d17c109308ed30a893-ol9_x86_64_codeready_builder
edk2-ovmf-20241117-4.0.1.el9_7.3.noarch.rpm92d72b66b7c60954e337a199a7b673f50854f5405896658dedab4b925dabfb6c-ol9_x86_64_appstream
edk2-tools-20241117-4.0.1.el9_7.3.x86_64.rpm7c3620f3c89f5225c551bcc791213eaa6f2ce9fc81ac6fefb12dc2d3cf53f31a-ol9_x86_64_codeready_builder
edk2-tools-doc-20241117-4.0.1.el9_7.3.noarch.rpm8adae9a64c0b37dbbbe74836bcceac2df6739fa017172f98f5bbd5a0d8039a7f-ol9_x86_64_codeready_builder



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete