Security Advisory

CVE-2023-40549

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-01-29 16:29:26
Last updated 2025-11-20 19:53:36
Assigner redhat
State PUBLISHED

Description

An out-of-bounds read flaw was found in Shim due to the lack of proper boundary verification during the load of a PE binary. This flaw allows an attacker to load a crafted PE binary, triggering the issue and crashing Shim, resulting in a denial of service.