7.8
CVSSv3

CVE-2022-28737

Published: 20/07/2023 Updated: 28/07/2023
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

There's a possible overflow in handle_image() when shim tries to load and execute crafted EFI executables; The handle_image() function takes into account the SizeOfRawData field from each section to be loaded. An attacker can leverage this to perform out-of-bound writes into memory. Arbitrary code execution is not discarded in such scenario.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

redhat shim

Vendor Advisories

Synopsis Important: grub2, mokutil, and shim security update Type/Severity Security Advisory: Important Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for grub2, mokutil, and shim is now available for Red Hat Enterprise Linux 81 Update Services for SAP ...
Synopsis Important: grub2, mokutil, shim, and shim-unsigned-x64 security update Type/Severity Security Advisory: Important Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for grub2, mokutil, shim, and shim-unsigned-x64 is now available for Red Hat Enterp ...
Synopsis Important: grub2, mokutil, shim, and shim-unsigned-x64 security update Type/Severity Security Advisory: Important Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for grub2, mokutil, shim, and shim-unsigned-x64 is now available for Red Hat Enterp ...
Synopsis Important: grub2, mokutil, shim, and shim-unsigned-x64 security update Type/Severity Security Advisory: Important Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for grub2, mokutil, shim, and shim-unsigned-x64 is now available for Red Hat Enterp ...
概述 Moderate: Red Hat Advanced Cluster Management 2311 security updates and bug fixes 类型/严重性 Security Advisory: Moderate 标题 Red Hat Advanced Cluster Management for Kubernetes 2311 generalavailability release images, which provide security updates and bug fixesRed Hat Product Security has rated this update as having a sec ...
Synopsis Important: OpenShift Container Platform 4110 bug fix and security update Type/Severity Security Advisory: Important Topic Red Hat OpenShift Container Platform release 4110 is now available withupdates to packages and images that fix several bugs and add enhancementsThis release includes a security update for Red Hat OpenShift Co ...
Synopsis Moderate: Red Hat Advanced Cluster Management 245 security updates and bug fixes Type/Severity Security Advisory: Moderate Topic Red Hat Advanced Cluster Management for Kubernetes 245 GeneralAvailability release images, which fix bugs and update container imagesRed Hat Product Security has rated this update as having a security ...
Synopsis Moderate: Red Hat Advanced Cluster Management 251 security updates and bug fixes Type/Severity Security Advisory: Moderate Topic Red Hat Advanced Cluster Management for Kubernetes 251 GeneralAvailability release images, which fix security issues and bugsRed Hat Product Security has rated this update as having a security impactof ...
There's a possible overflow in handle_image() when shim tries to load and execute crafted EFI executables The handle_image() function takes into account the SizeOfRawData field from each section to be loaded An attacker can leverage this to perform out-of-bound writes into memory Arbitrary code execution is not discarded in such scenario ...