Database/Firmware, BMC & network fabric
shim (MZ/PE header parser): Out-of-bounds read parsing MZ binaries
CVSS 5.1CVE-2023-40551Firmware, BMC & network fabricshim 15.8 batchcurated
Impact
Out-of-bounds read parsing MZ binaries. Leaks memory contents from the pre-boot environment, which can include key material the firmware has not yet cleared.
Who can reach it
Crafted MZ binary loaded via shim.
What to do
shim package update + reboot. Bundle with the rest of the shim 15.8 batch.
References
Related entries
- Solidigm DC SSDs (D3-S4510/S4520/S4610/S4620, D5-P5316, D7-P5520/P5620, DC S4500/S4600)CVE-2024-47973 · Solidigm DC SSDs (D3-S4510/S4520/S4610/S4620, D5-P5316, D7-P5520/P5620, DC S4500/S4600) - over-provisioned NAND not…Medium
- Arm Neoverse V2 / V3 / V3AE, Cortex-X3 / X4 / X925, C1-seriesCVE-2024-7881 · Arm Neoverse V2 / V3 / V3AE, Cortex-X3 / X4 / X925, C1-series; mitigated in Trusted Firmware-A v2.2-v2.12 and LTS…Medium
- Junos Space: stored XSS in management UI pages lets an attacker run actions as a logged-in administratorCVE-2025-59990 · Juniper Junos Space (template creation and report generation pages)Medium
- NVIDIA UFM Enterprise: hard-coded key in session management allows information disclosure and privilege escalationCVE-2026-24166 · NVIDIA UFM Enterprise (session management, hard-coded cryptographic key)Medium
- IBM PowerVM PKS and virtual TPM: persistent key seeds produce a reduced-strength AES keyCVE-2026-4936 · IBM PowerVM Hypervisor Platform KeyStore (PKS) and virtual TPM, FW950 / FW1060 / FW1110Medium
- OpenIPMI before 2.0.36: Where this bites an operator is in test and CI infrastructure rather than production nodesCVE-2024-42934 · OpenIPMI before 2.0.36Medium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.