CVE-2016-3699

HIGH

Linux Kernel - Secure Boot Bypass via ACPI Table Injection

Title source: llm
STIX 2.1

Description

The Linux kernel, as used in Red Hat Enterprise Linux 7.2 and Red Hat Enterprise MRG 2 and when booted with UEFI Secure Boot enabled, allows local users to bypass intended Secure Boot restrictions and execute untrusted code by appending ACPI tables to the initrd.

References (6)

Core 6
Core References
Issue Tracking, Patch, Third Party Advisory, VDB Entry x_refsource_confirm
https://bugzilla.redhat.com/show_bug.cgi?id=1329653
Third Party Advisory mailing-list x_refsource_mlist
http://www.openwall.com/lists/oss-security/2016/09/22/4
Vendor Advisory vendor-advisory x_refsource_redhat
http://rhn.redhat.com/errata/RHSA-2016-2584.html
Vendor Advisory vendor-advisory x_refsource_redhat
http://rhn.redhat.com/errata/RHSA-2016-2574.html
Broken Link vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/93114

Scores

CVSS v3 7.4
EPSS 0.0050
EPSS Percentile 39.5%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-264
Status published
Products (3)
linux/linux_kernel
redhat/enterprise_mrg 2.0
redhat/linux 7.2
Published Oct 07, 2016
Tracked Since Feb 18, 2026