CVE-2015-7837
Moderate
CVE-2015-7837
The Linux kernel, as used in Red Hat Enterprise Linux 7, kernel-rt, and Enterprise MRG 2 and when booted with UEFI Secure Boot enabled, allows local users to bypass intended securelevel/secureboot restrictions by leveraging improper handling of secure_boot flag across kexec reboot.
Exploit probability
0.4%
Published
September 19, 2017
Required by
Not available
Last source change
April 10, 2026
04 / EVIDENCE
Source records
Open Source Vulnerabilities
CVE-2015-7837
View original source
The Linux kernel, as used in Red Hat Enterprise Linux 7, kernel-rt, and Enterprise MRG 2 and when booted with UEFI Secure Boot enabled, allows local users to bypass intended securelevel/secureboot restrictions by leveraging improper handling of secure_boot flag across kexec reboot.
05 / REFERENCES
Further evidence
- http://rhn.redhat.com/errata/RHSA-2015-2152.html
- http://rhn.redhat.com/errata/RHSA-2015-2411.html
- http://www.openwall.com/lists/oss-security/2015/10/15/6
- http://www.securityfocus.com/bid/77097
- https://bugzilla.redhat.com/show_bug.cgi?id=1272472
- https://github.com/mjg59/linux/commit/4b2b64d5a6ebc84214755ebccd599baef7c1b798