Database/Firmware, BMC & network fabric
shim (verify_buffer_authenticode): Out-of-bounds read on a malformed PE file crashes shim and blocks boot
CVE-2023-40549Firmware, BMC & network fabricshim 15.8 batchcurated
Impact
Out-of-bounds read on a malformed PE file crashes shim and blocks boot. Same operational cost as the other shim DoS - a node that will not boot needs hands or BMC per box.
Who can reach it
A malformed EFI binary in the boot path.
What to do
shim package update + reboot.
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.