CVE-2023-48733
14.02.2024, 22:15
An insecure default to allow UEFI Shell in EDK2 was left enabled in Ubuntu's EDK2. This allows an OS-resident attacker to bypass Secure Boot.Enginsight
Vendor | Product | Version |
---|---|---|
canonical | lxd | 5.0:candidate |
canonical | lxd | 5.21:candidate |
canonical | lxd | 5.21:edge |
tianocore | edk2 | 𝑥 ≤ 2023.11-8 |
debian | debian_linux | 10.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References