CVE-2016-3699
CVE-2016-3699
The Linux kernel, as used in Red Hat Enterprise Linux 7.2 and Red Hat Enterprise MRG 2 and when booted with UEFI Secure Boot enabled, allows local users to bypass intended Secure Boot restrictions and execute untrusted code by appending ACPI tables to the initrd.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://rhn.redhat.com/errata/RHSA-2016-2574.htmlhttp://rhn.redhat.com/errata/RHSA-2016-2584.htmlhttps://bugzilla.redhat.com/show_bug.cgi?id=1329653https://github.com/mjg59/linux/commit/a4a5ed2835e8ea042868b7401dced3f517cafa76http://www.openwall.com/lists/oss-security/2016/09/22/4http://www.securityfocus.com/bid/93114