Shim
11 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Shim, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.
Shim CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 11 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- High4
- Medium6
- Low1
Latest CVEs
The 11 most recently published vulnerabilities affecting Shim.
- CVE-2023-40551Shim: out of bounds read when parsing mz binaries5.1
- CVE-2023-40549Shim: out-of-bounds read in verify_buffer_authenticode() malformed pe file6.2
- CVE-2023-40546Shim: out-of-bounds read printing error messages6.2
- CVE-2023-40550Shim: out-of-bound read in verify_buffer_sbat()5.5
- CVE-2023-40548Shim: interger overflow leads to heap buffer overflow in verify_sbat_section on 32-bits systems7.4
- CVE-2023-40547Shim: rce in http boot support may lead to secure boot bypass8.3
- CVE-2022-28737There's a possible overflow in handle_image() when shim tries to load and execute crafted EFI executables6.5
- CVE-2014-8399The default configuration in systemd-shim 8 enables the Abandon debugging clause, which allows local users to cause a denial of service via unspecified vectors.2.1
- CVE-2014-3677Unspecified vulnerability in Shim might allow attackers to execute arbitrary code via a crafted MOK list, which triggers memory corruption.7.5
- CVE-2014-3675Shim allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted DHCPv6 packet.5.0
- CVE-2014-3676Heap-based buffer overflow in Shim allows remote attackers to execute arbitrary code via a crafted IPv6 address, related to the "tftp:// DHCPv6 boot option."7.5
Product grouping is registry-driven, with AI assist and human review. How it works