SB2023071286 - Security features bypass in Microsoft Windows for Trend Micro EFI Modules



SB2023071286 - Security features bypass in Microsoft Windows for Trend Micro EFI Modules

Published: July 12, 2023

Security Bulletin ID SB2023071286
Severity
Low
Patch available
YES
Number of vulnerabilities 1
Exploitation vector Physical access
Highest impact Data manipulation

Breakdown by Severity

Low 100%
  • Low
  • Medium
  • High
  • Critical

Description

This security bulletin contains information about 1 security vulnerability.


1) Security features bypass (CVE-ID: CVE-2023-28005)

The vulnerability allows an attacker to bypass Secure Boot restrictions.

the vulnerability exists due to incorrect implementation of the Secure Boot feature. An attacker with physical access to device can bypass the Secure Boot restrictions and gain unauthorized access to the system.


Remediation

Install update from vendor's website.