Show plain JSON{"configurations": [{"nodes": [{"cpeMatch": [{"criteria": "cpe:2.3:a:tianocore:edk2:201808:*:*:*:*:*:*:*", "matchCriteriaId": "8757385B-6944-488F-B565-417A37C24774", "vulnerable": true}, {"criteria": "cpe:2.3:a:tianocore:edk2:201811:*:*:*:*:*:*:*", "matchCriteriaId": "E5C29B4B-635D-498E-BFA0-C99810C7867F", "vulnerable": true}, {"criteria": "cpe:2.3:a:tianocore:edk2:201903:*:*:*:*:*:*:*", "matchCriteriaId": "A599E9E7-B318-4C66-A2F8-6137DE9EF8AC", "vulnerable": true}, {"criteria": "cpe:2.3:a:tianocore:edk2:201905:*:*:*:*:*:*:*", "matchCriteriaId": "5A3F577A-A397-4185-B477-C31065B6F598", "vulnerable": true}, {"criteria": "cpe:2.3:a:tianocore:edk2:201908:*:*:*:*:*:*:*", "matchCriteriaId": "76E6EC0C-BA9E-47AD-9A8E-D40BE97CAAFA", "vulnerable": true}, {"criteria": "cpe:2.3:a:tianocore:edk2:201911:*:*:*:*:*:*:*", "matchCriteriaId": "B2AFB7F1-63CF-4E11-8FD5-1E8D054616CF", "vulnerable": true}, {"criteria": "cpe:2.3:a:tianocore:edk2:202002:*:*:*:*:*:*:*", "matchCriteriaId": "02217318-D1DB-41BB-BE48-89BC3F0FA38C", "vulnerable": true}, {"criteria": "cpe:2.3:a:tianocore:edk2:202005:*:*:*:*:*:*:*", "matchCriteriaId": "5193EFCE-3330-48FA-8C63-4CE328A2D339", "vulnerable": true}, {"criteria": "cpe:2.3:a:tianocore:edk2:202008:*:*:*:*:*:*:*", "matchCriteriaId": "1C45BEB6-1F89-4813-B2CF-90639F9CE525", "vulnerable": true}, {"criteria": "cpe:2.3:a:tianocore:edk2:202011:*:*:*:*:*:*:*", "matchCriteriaId": "C76CE4FB-3BDE-464B-9807-093839D6DB24", "vulnerable": true}, {"criteria": "cpe:2.3:a:tianocore:edk2:202102:*:*:*:*:*:*:*", "matchCriteriaId": "063761E2-5C4D-480F-90FE-41D5ECC35E94", "vulnerable": true}, {"criteria": "cpe:2.3:a:tianocore:edk2:202105:*:*:*:*:*:*:*", "matchCriteriaId": "07F01519-D5C8-4BEE-A89B-8090F9A415CF", "vulnerable": true}], "negate": false, "operator": "OR"}]}], "descriptions": [{"lang": "en", "value": "A BIOS bug in firmware for a particular PC model leaves the Platform authorization value empty. This can be used to permanently brick the TPM in multiple ways, as well as to non-permanently DoS the system."}, {"lang": "es", "value": "Un error de la BIOS en el firmware de un determinado modelo de PC deja vac\u00edo el valor de autorizaci\u00f3n de la plataforma. Esto puede ser usado para brickear permanentemente el TPM de m\u00faltiples maneras, as\u00ed como para DoS no permanente del sistema"}], "id": "CVE-2021-38576", "lastModified": "2024-11-21T06:17:33.457", "metrics": {"cvssMetricV2": [{"acInsufInfo": false, "baseSeverity": "HIGH", "cvssData": {"accessComplexity": "LOW", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "COMPLETE", "baseScore": 7.8, "confidentialityImpact": "NONE", "integrityImpact": "NONE", "vectorString": "AV:N/AC:L/Au:N/C:N/I:N/A:C", "version": "2.0"}, "exploitabilityScore": 10.0, "impactScore": 6.9, "obtainAllPrivilege": false, "obtainOtherPrivilege": false, "obtainUserPrivilege": false, "source": "nvd@nist.gov", "type": "Primary", "userInteractionRequired": false}], "cvssMetricV31": [{"cvssData": {"attackComplexity": "LOW", "attackVector": "NETWORK", "availabilityImpact": "HIGH", "baseScore": 7.5, "baseSeverity": "HIGH", "confidentialityImpact": "NONE", "integrityImpact": "NONE", "privilegesRequired": "NONE", "scope": "UNCHANGED", "userInteraction": "NONE", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "version": "3.1"}, "exploitabilityScore": 3.9, "impactScore": 3.6, "source": "nvd@nist.gov", "type": "Primary"}]}, "published": "2022-01-03T22:15:09.903", "references": [{"source": "infosec@edk2.groups.io", "tags": ["Issue Tracking", "Permissions Required", "Third Party Advisory"], "url": "https://bugzilla.tianocore.org/show_bug.cgi?id=3499"}, {"source": "af854a3a-2127-422b-91ae-364da2661108", "tags": ["Issue Tracking", "Permissions Required", "Third Party Advisory"], "url": "https://bugzilla.tianocore.org/show_bug.cgi?id=3499"}], "sourceIdentifier": "infosec@edk2.groups.io", "vulnStatus": "Modified", "weaknesses": [{"description": [{"lang": "en", "value": "NVD-CWE-noinfo"}], "source": "nvd@nist.gov", "type": "Primary"}]}