PT-2023-28891 · Eve Os · Eve Os

Ilay Levi

·

Published

2023-09-20

·

Updated

2026-03-03

·

CVE-2023-43635

CVSS v3.1

8.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions EVE OS (affected versions not specified)
Description The measured boot solution in EVE OS uses a PCR locking mechanism to protect the "vault" directory, which is the most sensitive point in the system. However, the key used to encrypt/decrypt the "vault" is sealed using SHA1 PCRs instead of SHA256 PCRs, which is considered insecure. This leads to issues where machines with SHA256 PCRs enabled but SHA1 PCRs disabled are not protected, and attackers can easily retrieve the contents of the "vault". The use of SHA1 PCRs reduces the complexity level required to unseal the key, making it easier for attackers to access the "vault".
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Insufficiently Protected Credentials

Use of a Broken Cryptographic Algorithm

Weakness Enumeration

Related Identifiers

CVE-2023-43635
GHSA-4JVR-VJ2C-8Q37
GHSA-H929-FVVP-882C
GO-2026-4434
SUSE-SU-2026:0757-1

Affected Products

Eve Os