SB2022081738 - Security Boot bypass in Linux kernel



SB2022081738 - Security Boot bypass in Linux kernel

Published: August 17, 2022

Security Bulletin ID SB2022081738
Severity
Low
Patch available
NO
Number of vulnerabilities 1
Exploitation vector Physical access
Highest impact Code execution

Breakdown by Severity

Low 100%
  • Low
  • Medium
  • High
  • Critical

Description

This security bulletin contains information about 1 security vulnerability.


1) Security features bypass (CVE-ID: CVE-2022-21505)

The vulnerability allows an attacker to bypass implemented security restrictions.

The vulnerability exists due to incorrect implementation of the IMA lockdown feature. If IMA appraisal is used with the "ima_appraise=log" boot param, lockdown can be defeated with kexec on any machine with Secure Boot. An attacker with physical access to device can bypass Secure Boot mechanism.


Remediation

Cybersecurity Help is not aware of any official remediation provided by the vendor.