logo

Vendor-Signed UEFI Applications Allow Secure Boot Bypass

ID: 44a05fc9-cf8d-59f2-ad40-5341fa06aefc

STIX ID: report--44a05fc9-cf8d-59f2-ad40-5341fa06aefc

Feed Name: securityonline.info

Threat Score
70/100

Date Published: 2026-06-23

Date Updated: 2026-06-23

Author: Do Son

...
...

CERT/CC disclosed a Secure Boot bypass (VU#457458) discovered by ESET’s Martin Smolar affecting multiple vendor-signed UEFI applications (UEFI shell builds and a GRUB2 module). Vulnerable binaries expose powerful pre-boot functions (memory writes, variable edits, dmpstore) that can be abused to load unsigned code and defeat Secure Boot; vendors are revoking affected binaries via UEFI DBX updates and issuing firmware updates. No public proof-of-concept or confirmed in-the-wild exploitation has been reported, and successful exploitation requires administrative privileges or physical access, but would allow persistent compromise below the operating system.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.