kernel: security bypass in certs/blacklist.c and certs/system_keyring.c
Published Oct 2, 2020
6.5
MEDIUMCVSS 3.1
EPSS 0.53%
Description
The Linux kernel through 5.8.13 does not properly enforce the Secure Boot Forbidden Signature Database (aka dbx) protection mechanism. This affects certs/blacklist.c and certs/system_keyring.c.
Affected products
No data.
- ≤ 5.8.13
No data.
Red Hat Enterprise Linux 8
kernel-0:4.18.0-305.7.1.el8_4
Fixed · RHSA-2021:2570
Red Hat Enterprise Linux 8
kernel-rt-0:4.18.0-305.7.1.rt7.79.el8_4
Fixed · RHSA-2021:2599
Red Hat Enterprise Linux 8.1 Extended Update Support
kernel-0:4.18.0-147.51.1.el8_1
Fixed · RHSA-2021:2666
Red Hat Enterprise Linux 8.2 Extended Update Support
kernel-0:4.18.0-193.60.2.el8_2
Fixed · RHSA-2021:2718
Red Hat Enterprise Linux 8.2 Extended Update Support
kernel-rt-0:4.18.0-193.60.2.rt13.112.el8_2
Fixed · RHSA-2021:2719
Red Hat Migration Toolkit for Containers 1.4
rhmtc/openshift-migration-controller-rhel8:v1.4.6-4
Fixed · RHBA-2021:2854
Red Hat Migration Toolkit for Containers 1.4
rhmtc/openshift-migration-log-reader-rhel8:v1.4.6-4
Fixed · RHBA-2021:2854
Red Hat Migration Toolkit for Containers 1.4
rhmtc/openshift-migration-must-gather-rhel8:v1.4.6-4
Fixed · RHBA-2021:2854
Red Hat Migration Toolkit for Containers 1.4
rhmtc/openshift-migration-operator-bundle:v1.4.6-5
Fixed · RHBA-2021:2854
Red Hat Migration Toolkit for Containers 1.4
rhmtc/openshift-migration-registry-rhel8:v1.4.6-4
Fixed · RHBA-2021:2854
Red Hat Migration Toolkit for Containers 1.4
rhmtc/openshift-migration-rsync-transfer-rhel8:v1.4.6-4
Fixed · RHBA-2021:2854
Red Hat Migration Toolkit for Containers 1.4
rhmtc/openshift-migration-ui-rhel8:v1.4.6-4
Fixed · RHBA-2021:2854
Red Hat Migration Toolkit for Containers 1.4
rhmtc/openshift-migration-velero-plugin-for-aws-rhel8:v1.4.6-4
Fixed · RHBA-2021:2854
Red Hat Migration Toolkit for Containers 1.4
rhmtc/openshift-migration-velero-plugin-for-gcp-rhel8:v1.4.6-3
Fixed · RHBA-2021:2854
Red Hat Migration Toolkit for Containers 1.4
rhmtc/openshift-migration-velero-plugin-for-microsoft-azure-rhel8:v1.4.6-4
Fixed · RHBA-2021:2854
Red Hat Migration Toolkit for Containers 1.4
rhmtc/openshift-migration-velero-restic-restore-helper-rhel8:v1.4.6-5
Fixed · RHBA-2021:2854
Red Hat Migration Toolkit for Containers 1.4
rhmtc/openshift-migration-velero-rhel8:v1.4.6-5
Fixed · RHBA-2021:2854
Red Hat Migration Toolkit for Containers 1.4
rhmtc/openshift-velero-plugin-rhel8:v1.4.6-4
Fixed · RHBA-2021:2854
Red Hat Enterprise Linux 5
kernel
Not affected
Red Hat Enterprise Linux 6
kernel
Not affected
Red Hat Enterprise Linux 7
kernel
Not affected
Red Hat Enterprise Linux 7
kernel-alt
Will not fix
Red Hat Enterprise Linux 7
kernel-rt
Not affected
Red Hat Enterprise Linux 9
kernel
Not affected
Red Hat Enterprise MRG 2
kernel
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 8 | kernel-0:4.18.0-305.7.1.el8_4 | Fixed | RHSA-2021:2570 |
| Red Hat Enterprise Linux 8 | kernel-rt-0:4.18.0-305.7.1.rt7.79.el8_4 | Fixed | RHSA-2021:2599 |
| Red Hat Enterprise Linux 8.1 Extended Update Support | kernel-0:4.18.0-147.51.1.el8_1 | Fixed | RHSA-2021:2666 |
| Red Hat Enterprise Linux 8.2 Extended Update Support | kernel-0:4.18.0-193.60.2.el8_2 | Fixed | RHSA-2021:2718 |
| Red Hat Enterprise Linux 8.2 Extended Update Support | kernel-rt-0:4.18.0-193.60.2.rt13.112.el8_2 | Fixed | RHSA-2021:2719 |
| Red Hat Migration Toolkit for Containers 1.4 | rhmtc/openshift-migration-controller-rhel8:v1.4.6-4 | Fixed | RHBA-2021:2854 |
| Red Hat Migration Toolkit for Containers 1.4 | rhmtc/openshift-migration-log-reader-rhel8:v1.4.6-4 | Fixed | RHBA-2021:2854 |
| Red Hat Migration Toolkit for Containers 1.4 | rhmtc/openshift-migration-must-gather-rhel8:v1.4.6-4 | Fixed | RHBA-2021:2854 |
| Red Hat Migration Toolkit for Containers 1.4 | rhmtc/openshift-migration-operator-bundle:v1.4.6-5 | Fixed | RHBA-2021:2854 |
| Red Hat Migration Toolkit for Containers 1.4 | rhmtc/openshift-migration-registry-rhel8:v1.4.6-4 | Fixed | RHBA-2021:2854 |
| Red Hat Migration Toolkit for Containers 1.4 | rhmtc/openshift-migration-rsync-transfer-rhel8:v1.4.6-4 | Fixed | RHBA-2021:2854 |
| Red Hat Migration Toolkit for Containers 1.4 | rhmtc/openshift-migration-ui-rhel8:v1.4.6-4 | Fixed | RHBA-2021:2854 |
| Red Hat Migration Toolkit for Containers 1.4 | rhmtc/openshift-migration-velero-plugin-for-aws-rhel8:v1.4.6-4 | Fixed | RHBA-2021:2854 |
| Red Hat Migration Toolkit for Containers 1.4 | rhmtc/openshift-migration-velero-plugin-for-gcp-rhel8:v1.4.6-3 | Fixed | RHBA-2021:2854 |
| Red Hat Migration Toolkit for Containers 1.4 | rhmtc/openshift-migration-velero-plugin-for-microsoft-azure-rhel8:v1.4.6-4 | Fixed | RHBA-2021:2854 |
| Red Hat Migration Toolkit for Containers 1.4 | rhmtc/openshift-migration-velero-restic-restore-helper-rhel8:v1.4.6-5 | Fixed | RHBA-2021:2854 |
| Red Hat Migration Toolkit for Containers 1.4 | rhmtc/openshift-migration-velero-rhel8:v1.4.6-5 | Fixed | RHBA-2021:2854 |
| Red Hat Migration Toolkit for Containers 1.4 | rhmtc/openshift-velero-plugin-rhel8:v1.4.6-4 | Fixed | RHBA-2021:2854 |
| Red Hat Enterprise Linux 5 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 6 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel-alt | Will not fix | n/a |
| Red Hat Enterprise Linux 7 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel | Not affected | n/a |
| Red Hat Enterprise MRG 2 | kernel | Not affected | n/a |
No package ranges for this CVE.
Remediation
Red Hat mitigation
Mitigation for this issue is either not available or the currently available options don't meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.
References (6)
- https://access.redhat.com/security/cve/CVE-2020-26541 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1886285 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2020-19086 Advisory
- https://lkml.org/lkml/2020/9/15/1871 x_refsource_MISCExploitVendor Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2020-26541
- https://www.cve.org/CVERecord?id=CVE-2020-26541
| Link | Providers | Tags |
|---|---|---|
| https://access.redhat.com/security/cve/CVE-2020-26541 | Vendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=1886285 | Issue Tracking | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2020-19086 | Advisory | |
| https://lkml.org/lkml/2020/9/15/1871 | x_refsource_MISCExploitVendor Advisory | |
| https://nvd.nist.gov/vuln/detail/CVE-2020-26541 | ||
| https://www.cve.org/CVERecord?id=CVE-2020-26541 |
Change history (0)
No recorded changes yet.