GPU VulnDB

Database/Firmware, BMC & network fabric

shim (verify_buffer_authenticode): Out-of-bounds read on a malformed PE file crashes shim and blocks boot

CVE-2023-40549Firmware, BMC & network fabricshim 15.8 batchcurated

Impact

Out-of-bounds read on a malformed PE file crashes shim and blocks boot. Same operational cost as the other shim DoS - a node that will not boot needs hands or BMC per box.

Who can reach it

A malformed EFI binary in the boot path.

What to do

shim package update + reboot.

References

This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.