The Linux kernel through 5.8.13 does not properly enforce the Secure Boot Forbidden Signature Database (aka dbx) protection mechanism. This affects certs/blacklist.c and certs/system_keyring.c.
Version | Score | Severity | Vector String |
---|---|---|---|
3.1 | 6.5 | Medium | CVSS:3.1/AC:L/AV:L/A:H/C:H/I:H/PR:H/S:U/UI:R |
Product | Vendor | Version |
---|---|---|
n/a | n/a | SD662 |