Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

Oracle Linux 7 ELSA-2024-1959 Important Shim Security Fix

oracle
Calendar Grey May 3, 2024
Oracle Linux Logo Esm H88
Oracle Linux Security Bulletin ELSA-2024-1960 announces pivotal updates to the kernel addressing critical vulnerabilities.
The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

Summary

shim [- 15.8-2.0.3.el7] - Set shim.ol sbat generation to 3 [Orabug: 36271343] [- 15.8-2.0.1.el7] - Set SBAT_AUTOMATIC_DATE to 2021030218 [Orabug: 36271343] - Rebuild with Oracle certificates [Orabug: 36271343] - Full list of fixed CVEs: CVE-2023-40546, CVE-2023-40547, CVE-2023-40548, CVE-2023-40549, CVE-2023-40550, CVE-2023-40551 [Orabug: 36271343] [15.8-2.el7] - Rebuild to fix the commit ident and MAKEFLAGS Resolves: RHEL-11254 [15.8-1.el7] - Update to shim-15.8 for CVE-2023-40547 Resolves: RHEL-11254 shim-signed [15.8-1.0.3] - Update shimx64.efi signed by Microsoft [Orabug: 36271343] [15.8-1.0.1] - Set shim.ol sbat generation to 3 [Orabug: 36271343] - Set SBAT_AUTOMATIC_DATE to 2021030218 [Orabug: 36271343] - Rebuild with Oracle certificates [Orabug: 36271343] - Full list of fixed CVEs: CVE-2023-40546, CVE-2023-40547, CVE-2023-40548, CVE-2023-40549, CVE-2023-40550, CVE-2023-40551 [Orabug: 36271343] - Disable ia32 build [Orabug: 36271343]

SRPMs

http://oss.oracle.com/ol7/SRPMS-updates//shim-15.8-2.0.3.el7.src.rpm http://oss.oracle.com/ol7/SRPMS-updates//shim-signed-15.8-1.0.3.el7.src.rpm

x86_64

mokutil-15.8-1.0.3.el7.x86_64.rpm shim-unsigned-x64-15.8-2.0.3.el7.x86_64.rpm shim-x64-15.8-1.0.3.el7.x86_64.rpm

aarch64

Severity
important
Lowest
Low
Medium
High
Critical

Related CVEs: CVE-2023-40546 CVE-2023-40547 CVE-2023-40548 CVE-2023-40549 CVE-2023-40550 CVE-2023-40551

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here