VDB

DEBIAN-CVE-2023-40550

DEBIAN-CVE-2023-40550 PUBLISHED CVSS 5.5 MEDIUM

An out-of-bounds read flaw was found in Shim when it tried to validate the SBAT information. This issue may expose sensitive data during the system's boot phase.

Risk Scores

CVSS 3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Affected Products

VendorProductVersions
Debian:12shim15.7-1, 15.8-1~deb11u1, 15.8-1~deb10u1
Debian:11shim15.6-1, 15.6-1~deb11u1, 15.7-1
Debian:14shim0, 0, 0
Debian:13shim0, 0, 0

Timeline

  • Jan 29, 2024 CVE Published
  • Apr 28, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›