Description
IBM Power9 Self Boot Engine(SBE) could allow a privileged user to inject malicious code and compromise the integrity of the host firmware bypassing the host firmware signature verification process.
Published: 2021-05-26
Score: 9.1 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2021-7905 IBM Power9 Self Boot Engine(SBE) could allow a privileged user to inject malicious code and compromise the integrity of the host firmware bypassing the host firmware signature verification process.
History

No history.

Subscriptions

Ibm 8335-gth 8335-gtx 9008-22l 9009-22a 9009-22g 9009-41a 9009-41g 9009-42a 9009-42g 9040-mr9 9080-m9s 9183-22x 9223-22h 9223-22s 9223-42h 9223-42s Power9 System Firmware Scale-out Lc System Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2024-09-16T18:33:23.529Z

Reserved: 2020-12-17T00:00:00.000Z

Link: CVE-2021-20487

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-05-26T17:15:14.260

Modified: 2024-11-21T05:46:39.383

Link: CVE-2021-20487

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses