CVE漏洞中文网

0DayBank一个专门收集整理全球互联网漏洞的公开发布网站
  1. 首页
  2. CVE
  3. 正文

CVE-2016-7247 Microsoft Boot Manager Security Bypass Vulnerability (MS16-140)

2016年11月9日 1669点热度 0人点赞 0条评论

漏洞类别:Windows

漏洞等级:

漏洞信息

This security update resolves a vulnerability in Microsoft Windows. A security feature bypass vulnerability exists when Windows Secure Boot improperly loads a boot policy that is affected by the vulnerability.
The security update addresses the vulnerability by revoking affected boot policies in the firmware.

Affected Versions:-
This security update is rated Important for all supported editions of Windows 8.1, Windows Server 2012, Windows Server 2012 R2, Windows RT 8.1, Windows 10, and Windows Server 2016.

漏洞危害

An attacker who successfully exploited this vulnerability could disable code integrity checks, allowing test-signed executables and drivers to be loaded onto a target device. The vulnerability could allow security feature bypass if a physically-present attacker installs an affected boot policy.

解决方案

Customers are advised to refer to Microsoft Advisory MS16-140 for more details.

Patch:
Following are links for downloading patches to fix the vulnerabilities:

MS16-140

0day

标签: 暂无
最后更新:2016年11月20日

小助手

这个人很懒,什么都没留下

点赞
< 上一篇
下一篇 >

文章评论

您需要 登录 之后才可以评论

COPYRIGHT © 2024 www.pdr.cn CVE漏洞中文网. ALL RIGHTS RESERVED.

鲁ICP备2022031030号

联系邮箱:wpbgssyubnmsxxxkkk@proton.me