DSN-2020-004: Dell response to Grub2 vulnerabilities which may allow secure boot bypass

摘要: Dell is aware of a vulnerability in Grand Unified Bootloader (GRUB), known as “There’s a Hole in the Boot”, that may allow for Secure Boot bypass.

本文适用于 本文不适用于 本文并非针对某种特定的产品。 本文并非包含所有产品版本。

安全性文章类型

Security KB

CVE 标识符


CVE-2020-10713, CVE-2020-14308, CVE-2020-14309, CVE-2020-14310, CVE-2020-14311, CVE-2020-15705, CVE-2020-15706, CVE-2020-15707

问题摘要

There is a Grand Unified Bootloader (GRUB) vulnerability, known as "BootHole", that may allow for Secure Boot bypass.

详情

Dell is aware of a vulnerability in Grand Unified Bootloader (GRUB), known as "BootHole", that may allow for Secure Boot bypass.

The security of our products is critical to helping ensure our customers’ data and systems are protected. See the following Dell Security Advisories for specific remediation details:

Dell Client Platforms


Dell Storage Products

*Note: Any non-security updates or configuration changes required to support updates released by Operating System providers will be communicated through product-specific technical support articles.

建议

Dell recommends that customers review their Operating System provider’s advisories for further information, including appropriate identification and mitigation measures. 

See the following technical support articles which provide additional information and context as it relates to Dell products:  

产品

Product Security Information
文章属性
文章编号: 000177589
文章类型: Security KB
上次修改时间: 18 4月 2022
版本:  8
从其他戴尔用户那里查找问题的答案
支持服务
检查您的设备是否在支持服务涵盖的范围内。