Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2023-40550

Опубликовано: 29 янв. 2024
Источник: debian
EPSS Низкий

Описание

An out-of-bounds read flaw was found in Shim when it tried to validate the SBAT information. This issue may expose sensitive data during the system's boot phase.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
shimfixed15.8-1package
shimfixed15.8-1~deb12u1bookwormpackage
shimfixed15.8-1~deb11u1bullseyepackage

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=2259915

  • https://github.com/rhboot/shim/commit/93ce2552f3e9f71f888a672913bfc0eef255c56d (15.8)

  • Followup: https://github.com/rhboot/shim/commit/e7f5fdf53ee68025f3ef2688e2f27ccb0082db83 (15.8)

EPSS

Процентиль: 4%
0.0002
Низкий

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 1 года назад

An out-of-bounds read flaw was found in Shim when it tried to validate the SBAT information. This issue may expose sensitive data during the system's boot phase.

CVSS3: 5.5
redhat
больше 1 года назад

An out-of-bounds read flaw was found in Shim when it tried to validate the SBAT information. This issue may expose sensitive data during the system's boot phase.

CVSS3: 5.5
nvd
больше 1 года назад

An out-of-bounds read flaw was found in Shim when it tried to validate the SBAT information. This issue may expose sensitive data during the system's boot phase.

CVSS3: 5.5
msrc
6 месяцев назад

Описание отсутствует

CVSS3: 5.5
github
больше 1 года назад

An out-of-bounds read flaw was found in Shim when it tried to validate the SBAT information. This issue may expose sensitive data during the system's boot phase.

EPSS

Процентиль: 4%
0.0002
Низкий