Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2022-9465

Опубликовано: 07 июн. 2022
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2022-9465: shim security update (IMPORTANT)

[15.6-1.0.3]

  • Update shimx64.efi and shimia32.efi signed by Microsoft [JIRA: OLDIS-16370]

[15.6-1.0.2]

  • Update to shim-unsigned v15.6.rc2 [JIRA: OLDIS-16370]

[15.6-1.0.1]

  • Update to shim-unsigned v15.6.rc1 [JIRA: OLDIS-16370]

[15.5-1.0.3]

  • Update vendor certs [JIRA: OLDIS-16370]
  • Update oracle(grub2-sig-key) [JIRA: OLDIS-16370]

[15.5-1.0.1]

  • Allow MokListTrusted to be enabled by default [Orabug: 33770149]
  • Add patchset to load additional certificates from vendor signed EFI binary [Orabug: 33770149]

Обновленные пакеты

Oracle Linux 8

Oracle Linux x86_64

shim-ia32

15.6-1.0.3.el8

shim-x64

15.6-1.0.3.el8

Связанные CVE

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 2 года назад

There's a possible overflow in handle_image() when shim tries to load and execute crafted EFI executables; The handle_image() function takes into account the SizeOfRawData field from each section to be loaded. An attacker can leverage this to perform out-of-bound writes into memory. Arbitrary code execution is not discarded in such scenario.

CVSS3: 7.3
redhat
около 3 лет назад

There's a possible overflow in handle_image() when shim tries to load and execute crafted EFI executables; The handle_image() function takes into account the SizeOfRawData field from each section to be loaded. An attacker can leverage this to perform out-of-bound writes into memory. Arbitrary code execution is not discarded in such scenario.

CVSS3: 6.5
nvd
почти 2 года назад

There's a possible overflow in handle_image() when shim tries to load and execute crafted EFI executables; The handle_image() function takes into account the SizeOfRawData field from each section to be loaded. An attacker can leverage this to perform out-of-bound writes into memory. Arbitrary code execution is not discarded in such scenario.

CVSS3: 7.8
msrc
7 месяцев назад

Описание отсутствует

CVSS3: 6.5
debian
почти 2 года назад

There's a possible overflow in handle_image() when shim tries to load ...