Information on source package shim

Available versions

ReleaseVersion
buster15.4-7~deb10u1
buster (security)15.7-1~deb10u1
bullseye15.7-1~deb11u1
bookworm15.7-1
trixie15.7-1
sid15.7-1

Open issues

BugbusterbullseyebookwormtrixiesidDescription
CVE-2023-40551vulnerablevulnerable (no DSA)vulnerable (no DSA)vulnerablevulnerableA flaw was found in the MZ binary format in Shim. An out-of-bounds rea ...
CVE-2023-40550vulnerablevulnerable (no DSA)vulnerable (no DSA)vulnerablevulnerableAn out-of-bounds read flaw was found in Shim when it tried to validate ...
CVE-2023-40549vulnerablevulnerable (no DSA)vulnerable (no DSA)vulnerablevulnerableAn out-of-bounds read flaw was found in Shim due to the lack of proper ...
CVE-2023-40548vulnerablevulnerable (no DSA)vulnerable (no DSA)vulnerablevulnerableA buffer overflow was found in Shim in the 32-bit system. The overflow ...
CVE-2023-40547vulnerablevulnerable (no DSA)vulnerable (no DSA)vulnerablevulnerableA remote code execution vulnerability was found in Shim. The Shim boot ...
CVE-2023-40546vulnerablevulnerable (no DSA)vulnerable (no DSA)vulnerablevulnerableA flaw was found in Shim when an error happened while creating a new E ...

Resolved issues

BugDescription
CVE-2022-28737There's a possible overflow in handle_image() when shim tries to load ...

Security announcements

DSA / DLADescription
DLA-3312-1shim - security update

Search for package or bug name: Reporting problems