CVE-2019-11098
Insufficient input validation in MdeModulePkg in EDKII may allow an unauthenticated user to potentially enable escalation of privilege, denial of service and/or information disclosure via physical access.
Date published : 2021-07-14
https://edk2-docs.gitbook.io/security-advisory/bootguard-toctou-vulnerability