CVE Vulnerabilities

CVE-2023-40546

NULL Pointer Dereference

Published: Jan 29, 2024 | Modified: Sep 16, 2024
CVSS 3.x
5.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
6.2 MODERATE
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Ubuntu
MEDIUM

A flaw was found in Shim when an error happened while creating a new ESL variable. If Shim fails to create the new variable, it tries to print an error message to the user; however, the number of parameters used by the logging function doesnt match the format string used by it, leading to a crash under certain circumstances.

Weakness

A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.

Affected Software

Name Vendor Start Version End Version
Shim Redhat * 15.8 (excluding)
Red Hat Enterprise Linux 7 RedHat shim-0:15.8-3.el7 *
Red Hat Enterprise Linux 7 RedHat shim-signed-0:15.8-1.el7 *
Red Hat Enterprise Linux 8 RedHat shim-0:15.8-4.el8_9 *
Red Hat Enterprise Linux 8.2 Advanced Update Support RedHat shim-0:15.8-2.el8_2 *
Red Hat Enterprise Linux 8.2 Telecommunications Update Service RedHat shim-0:15.8-2.el8_2 *
Red Hat Enterprise Linux 8.2 Update Services for SAP Solutions RedHat shim-0:15.8-2.el8_2 *
Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support RedHat shim-0:15.8-2.el8_4 *
Red Hat Enterprise Linux 8.4 Telecommunications Update Service RedHat shim-0:15.8-2.el8_4 *
Red Hat Enterprise Linux 8.4 Update Services for SAP Solutions RedHat shim-0:15.8-2.el8_4 *
Red Hat Enterprise Linux 8.6 Extended Update Support RedHat shim-0:15.8-2.el8_6 *
Red Hat Enterprise Linux 8.8 Extended Update Support RedHat shim-0:15.8-2.el8 *
Red Hat Enterprise Linux 8.8 Extended Update Support RedHat shim-unsigned-x64-0:15.8-2.el8 *
Red Hat Enterprise Linux 9 RedHat shim-0:15.8-4.el9_3 *
Red Hat Enterprise Linux 9.0 Extended Update Support RedHat shim-0:15.8-3.el9 *
Red Hat Enterprise Linux 9.0 Extended Update Support RedHat shim-unsigned-aarch64-0:15.8-2.el9 *
Red Hat Enterprise Linux 9.0 Extended Update Support RedHat shim-unsigned-x64-0:15.8-2.el9 *
Red Hat Enterprise Linux 9.2 Extended Update Support RedHat shim-0:15.8-3.el9_2 *
Secureboot-db Ubuntu bionic *
Secureboot-db Ubuntu lunar *
Secureboot-db Ubuntu trusty *
Secureboot-db Ubuntu xenial *
Shim Ubuntu bionic *
Shim Ubuntu devel *
Shim Ubuntu esm-infra-legacy/trusty *
Shim Ubuntu esm-infra/xenial *
Shim Ubuntu focal *
Shim Ubuntu jammy *
Shim Ubuntu lunar *
Shim Ubuntu mantic *
Shim Ubuntu noble *
Shim Ubuntu oracular *
Shim Ubuntu trusty *
Shim Ubuntu trusty/esm *
Shim Ubuntu xenial *
Shim-signed Ubuntu bionic *
Shim-signed Ubuntu devel *
Shim-signed Ubuntu esm-infra-legacy/trusty *
Shim-signed Ubuntu esm-infra/xenial *
Shim-signed Ubuntu focal *
Shim-signed Ubuntu jammy *
Shim-signed Ubuntu lunar *
Shim-signed Ubuntu mantic *
Shim-signed Ubuntu noble *
Shim-signed Ubuntu oracular *
Shim-signed Ubuntu trusty *
Shim-signed Ubuntu trusty/esm *
Shim-signed Ubuntu xenial *

Potential Mitigations

References