CVSS3
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
NONE
Availability Impact
NONE
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
AI Score
Confidence
High
EPSS
Percentile
16.2%
An out-of-bounds read flaw was found in Shim when it tried to validate the SBAT information. This issue may expose sensitive data during the system’s boot phase.
Vendor | Product | Version | CPE |
---|---|---|---|
redhat | shim | * | cpe:2.3:a:redhat:shim:*:*:*:*:*:*:*:* |
fedoraproject | fedora | 39 | cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:* |
redhat | enterprise_linux | 8.0 | cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:* |
redhat | enterprise_linux | 9.0 | cpe:2.3:o:redhat:enterprise_linux:9.0:*:*:*:*:*:*:* |
access.redhat.com/errata/RHSA-2024:1834
access.redhat.com/errata/RHSA-2024:1835
access.redhat.com/errata/RHSA-2024:1873
access.redhat.com/errata/RHSA-2024:1876
access.redhat.com/errata/RHSA-2024:1883
access.redhat.com/errata/RHSA-2024:1902
access.redhat.com/errata/RHSA-2024:1903
access.redhat.com/errata/RHSA-2024:1959
access.redhat.com/errata/RHSA-2024:2086
access.redhat.com/security/cve/CVE-2023-40550
bugzilla.redhat.com/show_bug.cgi?id=2259915
CVSS3
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
NONE
Availability Impact
NONE
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
AI Score
Confidence
High
EPSS
Percentile
16.2%