CVE-2016-3320Microsoft Windows 10 vulnerability

CWE-2545 documents4 sources
Severity
4.9MEDIUMNVD
EPSS
6.4%
top 8.95%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 9
Latest updateMay 14

Description

Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allow attackers to bypass the Secure Boot protection mechanism by leveraging (1) administrative or (2) physical access to install a crafted boot manager, aka "Secure Boot Security Feature Bypass."

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:NExploitability: 1.2 | Impact: 3.6

Affected Packages11 packages

Also affects: Fedora 25

Patches

🔴Vulnerability Details

1
GHSA
GHSA-55gv-2639-x9jq: Microsoft Windows 82022-05-14

📋Vendor Advisories

1
Microsoft
Secure Boot Security Feature Bypass Vulnerability2016-08-09

🕵️Threat Intelligence

2
Talos
Microsoft Patch Tuesday - August 20162016-08-09
Talos
Microsoft Patch Tuesday - August 20162016-08-09