Get the latest tech news

Shim vulnerability exposes most Linux systems to attack


This low-level software is the glue that enables Linux to run on Secure Boot PCs, and it has a nasty problem.

This time around, it's a critical vulnerability in shim -- the key link between Linux and your computer's firmware during boot. It's the bridge between modern PCs and servers' Unified Extensible Firmware Interface (UEFI) Secure Boot and Linux. Specifically, the vulnerable part of the shim code is the one that deals with systems using HTTP to boot from a central server on a network.

Get the Android app

Or read this on r/technology

Read more on:

Photo of Linux

Linux

Photo of Shim vulnerability

Shim vulnerability

Photo of Linux systems

Linux systems

Related news:

News photo

Microsoft is bringing Linux’s sudo command to Windows 11

News photo

Critical vulnerability affecting most Linux distros allows for bootkits | Buffer overflow in bootloader shim allows attackers to run code each time devices boot up

News photo

Critical flaw in Shim bootloader impacts major Linux distros