CVE-2016-3320
Summary
Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allow attackers to bypass the Secure Boot protection mechanism by leveraging (1) administrative or (2) physical access to install a crafted boot manager, aka "Secure Boot Security Feature Bypass."
Impact & exploitability
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N
Affected products we track (1)
Recommendation
Apply the vendor fix in your normal patch cycle. Open any affected product above for its exact safe version.
Official patch: https://docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-100 ↗
Additional information
- NVD record
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-100Patch
- http://www.securityfocus.com/bid/92304Advisory
- http://www.securitytracker.com/id/1036573Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MVB6Y2TVKSOBTIIBRUAJUIH3LQHMHCAG/