vulnerability

Ubuntu: (Multiple Advisories) (CVE-2020-26541): Linux kernel vulnerabilities

Severity
7
CVSS
(AV:L/AC:M/Au:N/C:C/I:C/A:C)
Published
Oct 2, 2020
Added
Sep 9, 2021
Modified
Jan 23, 2025

Description

The Linux kernel through 5.8.13 does not properly enforce the Secure Boot Forbidden Signature Database (aka dbx) protection mechanism. This affects certs/blacklist.c and certs/system_keyring.c.

Solutions

ubuntu-upgrade-linux-image-5-10-0-1049-oemubuntu-upgrade-linux-image-5-11-0-1015-azureubuntu-upgrade-linux-image-5-11-0-1015-kvmubuntu-upgrade-linux-image-5-11-0-1017-awsubuntu-upgrade-linux-image-5-11-0-1017-oracleubuntu-upgrade-linux-image-5-11-0-1017-raspiubuntu-upgrade-linux-image-5-11-0-1017-raspi-nolpaeubuntu-upgrade-linux-image-5-11-0-1018-gcpubuntu-upgrade-linux-image-5-11-0-34-genericubuntu-upgrade-linux-image-5-11-0-34-generic-64kubuntu-upgrade-linux-image-5-11-0-34-generic-lpaeubuntu-upgrade-linux-image-5-11-0-34-lowlatencyubuntu-upgrade-linux-image-5-4-0-1010-ibmubuntu-upgrade-linux-image-5-4-0-1023-bluefieldubuntu-upgrade-linux-image-5-4-0-1029-gkeopubuntu-upgrade-linux-image-5-4-0-1048-raspiubuntu-upgrade-linux-image-5-4-0-1051-kvmubuntu-upgrade-linux-image-5-4-0-1057-gkeubuntu-upgrade-linux-image-5-4-0-1059-gcpubuntu-upgrade-linux-image-5-4-0-1059-oracleubuntu-upgrade-linux-image-5-4-0-1065-azureubuntu-upgrade-linux-image-5-4-0-92-genericubuntu-upgrade-linux-image-5-4-0-92-generic-lpaeubuntu-upgrade-linux-image-5-4-0-92-lowlatencyubuntu-upgrade-linux-image-5-8-0-1043-azureubuntu-upgrade-linux-image-awsubuntu-upgrade-linux-image-aws-lts-20-04ubuntu-upgrade-linux-image-azureubuntu-upgrade-linux-image-azure-lts-20-04ubuntu-upgrade-linux-image-bluefieldubuntu-upgrade-linux-image-gcpubuntu-upgrade-linux-image-gcp-lts-20-04ubuntu-upgrade-linux-image-genericubuntu-upgrade-linux-image-generic-64kubuntu-upgrade-linux-image-generic-64k-hwe-20-04ubuntu-upgrade-linux-image-generic-hwe-18-04ubuntu-upgrade-linux-image-generic-hwe-20-04ubuntu-upgrade-linux-image-generic-lpaeubuntu-upgrade-linux-image-generic-lpae-hwe-18-04ubuntu-upgrade-linux-image-generic-lpae-hwe-20-04ubuntu-upgrade-linux-image-gkeubuntu-upgrade-linux-image-gke-5-4ubuntu-upgrade-linux-image-gkeopubuntu-upgrade-linux-image-gkeop-5-4ubuntu-upgrade-linux-image-ibmubuntu-upgrade-linux-image-ibm-lts-20-04ubuntu-upgrade-linux-image-kvmubuntu-upgrade-linux-image-lowlatencyubuntu-upgrade-linux-image-lowlatency-hwe-18-04ubuntu-upgrade-linux-image-lowlatency-hwe-20-04ubuntu-upgrade-linux-image-oemubuntu-upgrade-linux-image-oem-20-04ubuntu-upgrade-linux-image-oem-20-04bubuntu-upgrade-linux-image-oem-osp1ubuntu-upgrade-linux-image-oracleubuntu-upgrade-linux-image-oracle-lts-20-04ubuntu-upgrade-linux-image-raspiubuntu-upgrade-linux-image-raspi-hwe-18-04ubuntu-upgrade-linux-image-raspi-nolpaeubuntu-upgrade-linux-image-raspi2ubuntu-upgrade-linux-image-snapdragon-hwe-18-04ubuntu-upgrade-linux-image-virtualubuntu-upgrade-linux-image-virtual-hwe-18-04ubuntu-upgrade-linux-image-virtual-hwe-20-04
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.