Vulnerability Description
A PGP signature bypass flaw was found in fwupd (all versions), which could lead to the installation of unsigned firmware. As per upstream, a signature bypass is theoretically possible, but not practical because the Linux Vendor Firmware Service (LVFS) is either not implemented or enabled in versions of fwupd shipped with Red Hat Enterprise Linux 7 and 8. The highest threat from this vulnerability is to confidentiality and integrity.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Redhat | Enterprise Linux | 7.0 |
Related Weaknesses (CWE)
References
- https://bugzilla.redhat.com/show_bug.cgi?id=1844316Issue TrackingThird Party Advisory
- https://github.com/justinsteven/advisories/blob/master/2020_fwupd_dangling_s3_buExploitThird Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1844316Issue TrackingThird Party Advisory
- https://github.com/justinsteven/advisories/blob/master/2020_fwupd_dangling_s3_buExploitThird Party Advisory
FAQ
What is CVE-2020-10759?
CVE-2020-10759 is a vulnerability with a CVSS score of 6.0 (MEDIUM). A PGP signature bypass flaw was found in fwupd (all versions), which could lead to the installation of unsigned firmware. As per upstream, a signature bypass is theoretically possible, but not practic...
How severe is CVE-2020-10759?
CVE-2020-10759 has been rated MEDIUM with a CVSS base score of 6.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-10759?
Check the references section above for vendor advisories and patch information. Affected products include: Redhat Enterprise Linux.