Secure Boot Security Feature Bypass Vulnerability
🔗 CVE IDs covered (1)
📋 Description
Reliance on a component that is not updateable in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.
🎯 Affected products23
- Windows 10 Version 1809 for 32-bit Systems
- Windows 10 Version 1809 for x64-based Systems
- Windows 10 Version 21H2 for 32-bit Systems
- Windows 10 Version 21H2 for ARM64-based Systems
- Windows 10 Version 21H2 for x64-based Systems
- Windows 10 Version 22H2 for 32-bit Systems
- Windows 10 Version 22H2 for ARM64-based Systems
- Windows 10 Version 22H2 for x64-based Systems
- Windows 11 Version 23H2 for ARM64-based Systems
- Windows 11 Version 23H2 for x64-based Systems
- Windows 11 Version 24H2 for ARM64-based Systems
- Windows 11 Version 24H2 for x64-based Systems
- Windows 11 Version 25H2 for ARM64-based Systems
- Windows 11 Version 25H2 for x64-based Systems
- Windows 11 Version 26H1 for ARM64-based Systems
- Windows 11 version 26H1 for x64-based Systems
- Windows Server 2019
- Windows Server 2019 (Server Core installation)
- Windows Server 2022
- Windows Server 2022 (Server Core installation)
- Windows Server 2022, 23H2 Edition (Server Core installation)
- Windows Server 2025
- Windows Server 2025 (Server Core installation)
✅ Remediation
KB5087538 (Security Update) — fixed build 10.0.17763.8755 KB5087545 (Security Update) — fixed build 10.0.20348.5139 KB5087424 (Security Hotpatch Update) — fixed build 10.0.20348.5074 KB5087544 (Security Update) — fixed build 10.0.19044.7291 KB5094127 (Security Update) — fixed build 10.0.19045.7417 KB5087539 (Security Update) — fixed build 10.0.26100.32860 KB5087423 (Security Hotpatch Update) — fixed build 10.0.26100.32772 KB5089549 (Security Update) — fixed build 10.0.26200.8457 KB5089466 (Security Hotpatch Update) — fixed build 10.0.26200.8390 KB5087420 (Security Update) — fixed build 10.0.22631.7079 KB5093998 (Security Update) — fixed build 10.0.22631.7219 KB5087541 (Security Update) — fixed build 10.0.25398.2330 KB5089549 (Security Update) — fixed build 10.0.26100.8457 KB5089466 (Security Hotpatch Update) — fixed build 10.0.26100.8390 KB5089548 (Security Update) — fixed build 10.0.28000.2113
🔗 References (27)
- advisoryhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-41097
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5087538
- referencehttps://support.microsoft.com/help/5087538
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5087545
- referencehttps://support.microsoft.com/help/5087545
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5087424
- referencehttps://support.microsoft.com/help/5087424
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5087544
- referencehttps://support.microsoft.com/help/5087544
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5094127
- referencehttps://support.microsoft.com/help/5094127
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5087539
- referencehttps://support.microsoft.com/help/5087539
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5087423
- referencehttps://support.microsoft.com/help/5087423
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5089549
- referencehttps://support.microsoft.com/help/5089549
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5089466
- referencehttps://support.microsoft.com/help/5089466
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5087420
- referencehttps://support.microsoft.com/help/5087420
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5093998
- referencehttps://support.microsoft.com/help/5093998
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5087541
- referencehttps://support.microsoft.com/help/5087541
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5089548
- referencehttps://support.microsoft.com/help/5089548