Unspecified vulnerability in Shim might allow attackers to execute arbitrary code via a crafted MOK list, which triggers memory corruption.
CVSS Details
- CVSS 3.1 Base Score: 8.4
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Oracle_linux | — | Upgrade shim-unsignedUpgrade shimUpgrade mokutil | Oct 16, 2024 | Oct 22, 2014 |
| Suse | — | Upgrade gnu-efiUpgrade shimUpgrade shim-susesigned | Dec 18, 2015 | Oct 22, 2014 |
| Ubuntu | — | Upgrade shim | Nov 19, 2024 | Oct 22, 2014 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub