Vulnerability Database
Blog
FAQ
Docs
RHSA-2024:1959
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2024:1959
Import Source
https://security.access.redhat.com/data/osv/RHSA-2024:1959.json
JSON Data
https://api.test.osv.dev/v1/vulns/RHSA-2024:1959
Related
CVE-2023-40546
CVE-2023-40547
CVE-2023-40548
CVE-2023-40549
CVE-2023-40550
CVE-2023-40551
Published
2024-10-01T13:45:19Z
Modified
2024-11-24T14:20:41Z
Severity
8.3 (High)
CVSS_V3 - CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
CVSS Calculator
Summary
Red Hat Security Advisory: shim security update
Details
References
https://access.redhat.com/errata/RHSA-2024:1959
https://access.redhat.com/security/updates/classification/#important
https://bugzilla.redhat.com/show_bug.cgi?id=2234589
https://bugzilla.redhat.com/show_bug.cgi?id=2241782
https://bugzilla.redhat.com/show_bug.cgi?id=2241796
https://bugzilla.redhat.com/show_bug.cgi?id=2241797
https://bugzilla.redhat.com/show_bug.cgi?id=2259915
https://bugzilla.redhat.com/show_bug.cgi?id=2259918
https://issues.redhat.com/browse/RHEL-2155
https://issues.redhat.com/browse/RHEL-4382
https://issues.redhat.com/browse/RHEL-4390
https://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_1959.json
https://access.redhat.com/security/cve/CVE-2023-40546
https://www.cve.org/CVERecord?id=CVE-2023-40546
https://nvd.nist.gov/vuln/detail/CVE-2023-40546
https://access.redhat.com/security/cve/CVE-2023-40547
https://www.cve.org/CVERecord?id=CVE-2023-40547
https://nvd.nist.gov/vuln/detail/CVE-2023-40547
https://access.redhat.com/security/cve/CVE-2023-40548
https://www.cve.org/CVERecord?id=CVE-2023-40548
https://nvd.nist.gov/vuln/detail/CVE-2023-40548
https://access.redhat.com/security/cve/CVE-2023-40549
https://www.cve.org/CVERecord?id=CVE-2023-40549
https://nvd.nist.gov/vuln/detail/CVE-2023-40549
https://access.redhat.com/security/cve/CVE-2023-40550
https://www.cve.org/CVERecord?id=CVE-2023-40550
https://nvd.nist.gov/vuln/detail/CVE-2023-40550
https://access.redhat.com/security/cve/CVE-2023-40551
https://www.cve.org/CVERecord?id=CVE-2023-40551
https://nvd.nist.gov/vuln/detail/CVE-2023-40551
Affected packages
Red Hat:enterprise_linux:7::client
/
mokutil
Package
Name
mokutil
Purl
pkg:rpm/redhat/mokutil
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:15.8-1.el7
Red Hat:enterprise_linux:7::client
/
mokutil-debuginfo
Package
Name
mokutil-debuginfo
Purl
pkg:rpm/redhat/mokutil-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:15.8-1.el7
Red Hat:enterprise_linux:7::client
/
shim
Package
Name
shim
Purl
pkg:rpm/redhat/shim
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:15.8-3.el7
Red Hat:enterprise_linux:7::client
/
shim-ia32
Package
Name
shim-ia32
Purl
pkg:rpm/redhat/shim-ia32
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:15.8-1.el7
Red Hat:enterprise_linux:7::client
/
shim-signed
Package
Name
shim-signed
Purl
pkg:rpm/redhat/shim-signed
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:15.8-1.el7
Red Hat:enterprise_linux:7::client
/
shim-unsigned-ia32
Package
Name
shim-unsigned-ia32
Purl
pkg:rpm/redhat/shim-unsigned-ia32
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:15.8-3.el7
Red Hat:enterprise_linux:7::client
/
shim-unsigned-x64
Package
Name
shim-unsigned-x64
Purl
pkg:rpm/redhat/shim-unsigned-x64
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:15.8-3.el7
Red Hat:enterprise_linux:7::client
/
shim-x64
Package
Name
shim-x64
Purl
pkg:rpm/redhat/shim-x64
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:15.8-1.el7
Red Hat:enterprise_linux:7::server
/
mokutil
Package
Name
mokutil
Purl
pkg:rpm/redhat/mokutil
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:15.8-1.el7
Red Hat:enterprise_linux:7::server
/
mokutil-debuginfo
Package
Name
mokutil-debuginfo
Purl
pkg:rpm/redhat/mokutil-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:15.8-1.el7
Red Hat:enterprise_linux:7::server
/
shim
Package
Name
shim
Purl
pkg:rpm/redhat/shim
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:15.8-3.el7
Red Hat:enterprise_linux:7::server
/
shim-ia32
Package
Name
shim-ia32
Purl
pkg:rpm/redhat/shim-ia32
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:15.8-1.el7
Red Hat:enterprise_linux:7::server
/
shim-signed
Package
Name
shim-signed
Purl
pkg:rpm/redhat/shim-signed
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:15.8-1.el7
Red Hat:enterprise_linux:7::server
/
shim-unsigned-ia32
Package
Name
shim-unsigned-ia32
Purl
pkg:rpm/redhat/shim-unsigned-ia32
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:15.8-3.el7
Red Hat:enterprise_linux:7::server
/
shim-unsigned-x64
Package
Name
shim-unsigned-x64
Purl
pkg:rpm/redhat/shim-unsigned-x64
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:15.8-3.el7
Red Hat:enterprise_linux:7::server
/
shim-x64
Package
Name
shim-x64
Purl
pkg:rpm/redhat/shim-x64
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:15.8-1.el7
Red Hat:enterprise_linux:7::workstation
/
mokutil
Package
Name
mokutil
Purl
pkg:rpm/redhat/mokutil
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:15.8-1.el7
Red Hat:enterprise_linux:7::workstation
/
mokutil-debuginfo
Package
Name
mokutil-debuginfo
Purl
pkg:rpm/redhat/mokutil-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:15.8-1.el7
Red Hat:enterprise_linux:7::workstation
/
shim
Package
Name
shim
Purl
pkg:rpm/redhat/shim
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:15.8-3.el7
Red Hat:enterprise_linux:7::workstation
/
shim-ia32
Package
Name
shim-ia32
Purl
pkg:rpm/redhat/shim-ia32
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:15.8-1.el7
Red Hat:enterprise_linux:7::workstation
/
shim-signed
Package
Name
shim-signed
Purl
pkg:rpm/redhat/shim-signed
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:15.8-1.el7
Red Hat:enterprise_linux:7::workstation
/
shim-unsigned-ia32
Package
Name
shim-unsigned-ia32
Purl
pkg:rpm/redhat/shim-unsigned-ia32
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:15.8-3.el7
Red Hat:enterprise_linux:7::workstation
/
shim-unsigned-x64
Package
Name
shim-unsigned-x64
Purl
pkg:rpm/redhat/shim-unsigned-x64
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:15.8-3.el7
Red Hat:enterprise_linux:7::workstation
/
shim-x64
Package
Name
shim-x64
Purl
pkg:rpm/redhat/shim-x64
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:15.8-1.el7
RHSA-2024:1959 - OSV