A vulnerability in the digital signature verification process does not properly validate variable attributes which allows an attacker to bypass signature verification by creating a non-authenticated NVRAM variable. An attacker may to execute arbitrary signed UEFI code and bypass Secure Boot.
Advisories
Source ID Title
EUVD EUVD EUVD-2025-18070 A vulnerability in the digital signature verification process does not properly validate variable attributes which allows an attacker to bypass signature verification by creating a non-authenticated NVRAM variable. An attacker may to execute arbitrary signed UEFI code and bypass Secure Boot.
Fixes

Solution

kernel 5.2, Version 05.2A.16 kernel 5.3, Version 05.39.16 kernel 5.4, Version 05.47.16 kernel 5.5, Version 05.55.16 kernel 5.6, Version 05.62.16 kernel 5.7, Version 05.71.16


Workaround

No workaround given by the vendor.

History

Wed, 30 Jul 2025 07:15:00 +0000

Type Values Removed Values Added
Description Running the provided utility changes the certificate on any Insyde BIOS and then the attached .efi file can be launched. A vulnerability in the digital signature verification process does not properly validate variable attributes which allows an attacker to bypass signature verification by creating a non-authenticated NVRAM variable. An attacker may to execute arbitrary signed UEFI code and bypass Secure Boot.

Sun, 13 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 9e-05}

epss

{'score': 0.0001}


Wed, 11 Jun 2025 14:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 11 Jun 2025 02:30:00 +0000

Type Values Removed Values Added
References

Wed, 11 Jun 2025 00:45:00 +0000

Type Values Removed Values Added
Description Running the provided utility changes the certificate on any Insyde BIOS and then the attached .efi file can be launched.
Title SecureFlashDxe: Incorrect UEFI variable attributes check allows usage of invalid certificate
References
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: Insyde

Published:

Updated: 2025-08-14T05:58:07.245Z

Reserved: 2025-05-05T01:59:27.834Z

Link: CVE-2025-4275

cve-icon Vulnrichment

Updated: 2025-06-11T01:32:11.159Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-06-11T01:15:20.750

Modified: 2025-07-30T08:15:34.240

Link: CVE-2025-4275

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses

No weakness.