UBUNTU-CVE-2015-7837
Dashboard / Vulnerabilities / UBUNTU-CVE-2015-7837
UBUNTU-CVE-2015-7837
Summary:
Details: The Linux kernel, as used in Red Hat Enterprise Linux 7, kernel-rt, and Enterprise MRG 2 and when booted with UEFI Secure Boot enabled, allows local users to bypass intended securelevel/secureboot restrictions by leveraging improper handling of secure_boot flag across kexec reboot.
References: https://ubuntu.com/security/CVE-2015-7837, http://www.openwall.com/lists/oss-security/2015/10/15, https://bugzilla.redhat.com/show_bug.cgi?id=1243998#c3, https://ubuntu.com/security/notices/USN-3405-1, https://ubuntu.com/security/notices/USN-3405-2, https://www.cve.org/CVERecord?id=CVE-2015-7837
Affected packages
Package
Name: linux-lts-vivid
Purl: pkg:deb/ubuntu/linux-lts-vivid?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
