PT-2024-2765 · Shim+6 · Shim+6

Marco Benatto

·

Published

2024-01-23

·

Updated

2025-03-07

·

CVE-2023-40551

CVSS v3.1

5.1

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:H
Name of the Vulnerable Software and Affected Versions Shim (affected versions not specified)
Description A flaw was found in the MZ binary format in Shim, which is related to an out-of-bounds read. This issue may cause a crash or potentially expose sensitive data during the system's boot phase.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Out of bounds Read

Weakness Enumeration

Related Identifiers

ALSA-2024:1902
ALSA-2024:1903
ALT-PU-2024-1671
ALT-PU-2024-1869
ALT-PU-2024-1877
ALT-PU-2024-4050
AZL-34160
AZL-35258
BDU:2024-02899
CESA-2024_1902
CVE-2023-40551
DLA-3813-1
OESA-2024-1115
OESA-2024-1116
OESA-2024-1117
OESA-2024-1118
OESA-2024-1119
OESA-2024-1120
OPENSUSE-SU-2024_1368-1
RHSA-2024:1834
RHSA-2024:1835
RHSA-2024:1873
RHSA-2024:1876
RHSA-2024:1883
RHSA-2024:1902
RHSA-2024:1903
RHSA-2024:1959
RHSA-2024:2086
RHSA-2024_1902
RHSA-2024_1903
RHSA-2024_1959
SUSE-SU-2024:1368-1
SUSE-SU-2024:1461-1
SUSE-SU-2024:1462-1
SUSE-SU-2025:20136-1

Affected Products

Alt Linux
Almalinux
Centos
Red Hat
Red Os
Shim
Suse