CVE-2023-49721
14.02.2024, 22:15
An insecure default to allow UEFI Shell in EDK2 was left enabled in LXD. This allows an OS-resident attacker to bypass Secure Boot.Enginsight
Vendor | Product | Version |
---|---|---|
canonical | lxd | 5.0.0 ≤ 𝑥 < 5.21.0 |
tianocore | edk2 | 𝑥 ≤ 2023.11-8 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References