RHSA-2026:18465HighCVSS 8.2

Red Hat Security Advisory: edk2 security update

Published
May 19, 2026
Last Modified
September 1, 2026

🔗 CVE IDs covered (1)

📋 Description

CVE-2025-2296 — edk2: EDK2: Improper Input Validation allows arbitrary command execution

🎯 Affected products14

  • Red Hat Enterprise Linux AppStream (v. 10)
  • Red Hat Enterprise Linux CodeReady Linux Builder (v. 10)
  • edk2-0:20251114-5.el10_2.src as a component of Red Hat Enterprise Linux AppStream (v. 10)
  • edk2-aarch64-0:20251114-5.el10_2.noarch as a component of Red Hat Enterprise Linux AppStream (v. 10)
  • edk2-aarch64-0:20251114-5.el10_2.noarch as a component of Red Hat Enterprise Linux CodeReady Linux Builder (v. 10)
  • edk2-debugsource-0:20251114-5.el10_2.aarch64 as a component of Red Hat Enterprise Linux CodeReady Linux Builder (v. 10)
  • edk2-debugsource-0:20251114-5.el10_2.x86_64 as a component of Red Hat Enterprise Linux CodeReady Linux Builder (v. 10)
  • edk2-ovmf-0:20251114-5.el10_2.noarch as a component of Red Hat Enterprise Linux AppStream (v. 10)
  • edk2-ovmf-0:20251114-5.el10_2.noarch as a component of Red Hat Enterprise Linux CodeReady Linux Builder (v. 10)
  • edk2-tools-0:20251114-5.el10_2.aarch64 as a component of Red Hat Enterprise Linux CodeReady Linux Builder (v. 10)
  • edk2-tools-0:20251114-5.el10_2.x86_64 as a component of Red Hat Enterprise Linux CodeReady Linux Builder (v. 10)
  • edk2-tools-debuginfo-0:20251114-5.el10_2.aarch64 as a component of Red Hat Enterprise Linux CodeReady Linux Builder (v. 10)
  • edk2-tools-debuginfo-0:20251114-5.el10_2.x86_64 as a component of Red Hat Enterprise Linux CodeReady Linux Builder (v. 10)
  • edk2-tools-doc-0:20251114-5.el10_2.noarch as a component of Red Hat Enterprise Linux CodeReady Linux Builder (v. 10)

✅ Remediation

For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Workaround: To reduce the risk by disabling direct-boot mode, ensuring all bootable kernels are signed and present in the Secure Boot DB, and restricting privileged access to prevent attackers from introducing unsigned payloads.

🔗 References (11)