An insecure default to allow UEFI Shell in EDK2 was left enabled in Ubuntus EDK2. This allows an OS-resident attacker to bypass Secure Boot.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Edk2 | Ubuntu | bionic | * |
Edk2 | Ubuntu | devel | * |
Edk2 | Ubuntu | focal | * |
Edk2 | Ubuntu | jammy | * |
Edk2 | Ubuntu | lunar | * |
Edk2 | Ubuntu | mantic | * |
Edk2 | Ubuntu | noble | * |
Edk2 | Ubuntu | oracular | * |
Edk2 | Ubuntu | trusty | * |
Edk2 | Ubuntu | xenial | * |