REDHAT-BUG-2089529: Medium severity Red Hat Enterprise Linux vulnerability
A set of pre-production kernel packages of Red Hat Enterprise Linux for IBM Power architecture can be booted by the grub in Secure Boot mode even though it shouldn't. These kernel builds don't have the secure boot lockdown patches applied to it and can bypass the secure boot validations, allowing the attacker to load another non-trusted code.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2089529?
The severity of REDHAT-BUG-2089529 is considered critical due to the potential bypass of Secure Boot protections.
How do I fix REDHAT-BUG-2089529?
To fix REDHAT-BUG-2089529, users should update to the latest kernel packages that include secure boot lockdown patches.
What are the consequences of REDHAT-BUG-2089529?
The consequences of REDHAT-BUG-2089529 include the risk of unauthorized code execution by bypassing secure boot validations.
Who is affected by REDHAT-BUG-2089529?
REDHAT-BUG-2089529 affects users of Red Hat Enterprise Linux on IBM Power architecture using pre-production kernel packages.
Is Secure Boot still effective with REDHAT-BUG-2089529?
No, Secure Boot is not effective in the case of REDHAT-BUG-2089529 as the vulnerable kernel builds can boot without proper validations.