CVE-2024-20688

CVSS 3.1 Score 7.1 of 10 (high)

Details

Published Apr 9, 2024
Updated: Apr 10, 2024
CWE ID 121

Summary

CVE-2024-20688 is a newly disclosed vulnerability affecting Secure Boot, a critical security feature designed to authenticate the integrity of a system's boot process. Hackers can exploit this vulnerability to bypass Secure Boot, allowing them to load unauthorized code during the boot process. This can potentially lead to system compromise and unauthorized access to sensitive information. Mitigation measures include updating the Secure Boot policy and applying vendor-provided patches once they become available. Until then, organizations are advised to implement additional security controls, such as multi-factor authentication and network segmentation, to protect against potential attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share