CVE-2016-3699
HIGHLinux Kernel - Secure Boot Bypass via ACPI Table Injection
Title source: llmDescription
The Linux kernel, as used in Red Hat Enterprise Linux 7.2 and Red Hat Enterprise MRG 2 and when booted with UEFI Secure Boot enabled, allows local users to bypass intended Secure Boot restrictions and execute untrusted code by appending ACPI tables to the initrd.
References (6)
Core 6
Core References
Issue Tracking, Patch, Third Party Advisory, VDB Entry x_refsource_confirm
https://bugzilla.redhat.com/show_bug.cgi?id=1329653
Exploit x_refsource_misc
https://github.com/mjg59/linux/commit/a4a5ed2835e8ea042868b7401dced3f517cafa76
Third Party Advisory mailing-list
x_refsource_mlist
http://www.openwall.com/lists/oss-security/2016/09/22/4
Vendor Advisory vendor-advisory
x_refsource_redhat
http://rhn.redhat.com/errata/RHSA-2016-2584.html
Vendor Advisory vendor-advisory
x_refsource_redhat
http://rhn.redhat.com/errata/RHSA-2016-2574.html
Broken Link vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/93114
Scores
CVSS v3
7.4
EPSS
0.0050
EPSS Percentile
39.5%
Attack Vector
LOCAL
CVSS:3.0/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-264
Status
published
Products (3)
linux/linux_kernel
redhat/enterprise_mrg
2.0
redhat/linux
7.2
Published
Oct 07, 2016
Tracked Since
Feb 18, 2026