A subtle overflow in a widely used UEFI helper — the shim bootloader’s handle_image() routine — reappeared in headlines after CVE-2022-28737 was published, and Microsoft’s short advisory that “Azure Linux includes this open‑source library and is therefore potentially affected” has prompted a...
In recent news, a significant vulnerability has been identified that could affect systems using Secure Boot, particularly those utilizing Red Hat's Shim implementation. This vulnerability is cataloged as CVE-2023-40547 and pertains to remote code execution (RCE) in HTTP boot support, which may...