GHSA-5xg9-v43g-xgcjMediumCVSS 6.4

A vulnerability related to the use an insecure Platform Key (PK) has been discovered. An attacker...

Published
August 26, 2024
Last Modified
June 28, 2026

🔗 CVE IDs covered (1)

📋 Description

A vulnerability related to the use an insecure Platform Key (PK) has been discovered. An attacker with the compromised PK private key can create malicious UEFI software that is signed with a trusted key that has been compromised.

🔗 References (11)