CVE-2023-40547

CVE Details

Release Date:2024-01-23

Description


A remote code execution vulnerability was found in Shim. The Shim boot support trusts attacker-controlled values when parsing an HTTP response. This flaw allows an attacker to craft a specific malicious HTTP request, leading to a completely controlled out-of-bounds write primitive and complete system compromise. This flaw is only exploitable during the early boot phase, an attacker needs to perform a Man-in-the-Middle or compromise the boot server to be able to exploit this vulnerability successfully.

See more information about CVE-2023-40547 from MITRE CVE dictionary and NIST NVD


CVSS v3.0 metrics


NOTE: The following CVSS v3.0 metrics and score provided are preliminary and subject to review.

Base Score: 8.3 Base Metrics: AV:A/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
Access Vector: Adjacent network Attack Complexity: High
Privileges Required: None User Interaction: None
Scope: Changed Confidentiality Impact: High
Integrity Impact: High Availability Impact: High

Errata information


PlatformErrataRelease Date
Oracle Linux version 7 (shim)ELSA-2024-19592024-05-01
Oracle Linux version 7 (shim-signed)ELSA-2024-19592024-05-01
Oracle Linux version 8 (shim)ELSA-2024-19022024-04-25
Oracle Linux version 9 (shim)ELSA-2024-19032024-04-22



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete