The Linux kernel through 5.8.13 does not properly enforce the Secure Boot Forbidden Signature Database (aka dbx) protection mechanism. This affects certs/blacklist.c and certs/system_keyring.c.
| Version | Score | Severity | Vector String |
|---|---|---|---|
| 3.1 | 6.5 | Medium | CVSS:3.1/AC:L/AV:L/A:H/C:H/I:H/PR:H/S:U/UI:R |
| Product | Vendor | Version |
|---|---|---|
| n/a | n/a | SD662 |