Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:40368
HistoryMay 01, 2023 - 10:43 p.m.

Authentication Bypass

2023-05-0122:43:24
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11
linux
kernel
authentication bypass
vulnerability
library
policy
conditions
attacker
uefi secure boot
ima appraisal
software

0 Low

EPSS

Percentile

0.0%

Linux kernel is vulnerable to Authentication Bypass. The vulnerability exists because the library does not properly enforce policy in certain conditions, which allows an attacker to bypass the Kernel lockdown restrictions when UEFI secure boot is disabled or unavailable and IMA appraisal is enabled