Source |
The Hacker News |
Identifiant |
8638259 |
Date de publication |
2025-01-16 16:53:00 (vue: 2025-01-16 13:08:05) |
Titre |
New UEFI Secure Boot Vulnerability Could Allow Attackers to Load Malicious Bootkits |
Texte |
Details have emerged about a now-patched security vulnerability that could allow a bypass of the Secure Boot mechanism in Unified Extensible Firmware Interface (UEFI) systems.
The vulnerability, assigned the CVE identifier CVE-2024-7344 (CVSS score: 6.7), resides in a UEFI application signed by Microsoft\'s "Microsoft Corporation UEFI CA 2011" third-party UEFI certificate, according to a new
Details have emerged about a now-patched security vulnerability that could allow a bypass of the Secure Boot mechanism in Unified Extensible Firmware Interface (UEFI) systems.
The vulnerability, assigned the CVE identifier CVE-2024-7344 (CVSS score: 6.7), resides in a UEFI application signed by Microsoft\'s "Microsoft Corporation UEFI CA 2011" third-party UEFI certificate, according to a new |
Notes |
★★★
|
Envoyé |
Oui |
Condensat |
2011 2024 7344 about according allow application assigned attackers boot bootkits bypass certificate corporation could cve cvss details emerged extensible firmware have identifier interface load malicious mechanism microsoft new now party patched resides score: secure security signed systems third uefi unified vulnerability |
Tags |
Vulnerability
|
Stories |
|
Move |
|