Description
The Fedora Secure Boot CA certificate shipped with shim in Fedora was expired which could lead to old or invalid signed boot components being loaded.
Problem types
Use of a Key Past its Expiration Date
Product status
15.6-2 before 15.8-2
Timeline
2025-08-14: | Reported to Red Hat. |
2024-03-14: | Made public. |
References
access.redhat.com/security/cve/CVE-2023-5342
bodhi.fedoraproject.org/updates/FEDORA-2024-2aa28a4cfc
bugzilla.redhat.com/show_bug.cgi?id=2198977
bugzilla.redhat.com/show_bug.cgi?id=2388707 (RHBZ#2388707)