CVE-2023-48733
14.02.2024, 22:15
An insecure default to allow UEFI Shell in EDK2 was left enabled in Ubuntu's EDK2. This allows an OS-resident attacker to bypass Secure Boot.Enginsight
| Vendor | Product | Version |
|---|---|---|
| canonical | lxd | 5.0:candidate |
| canonical | lxd | 5.21:candidate |
| canonical | lxd | 5.21:edge |
| tianocore | edk2 | 𝑥 ≤ 2023.11-8 |
| debian | debian_linux | 10.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References