In Lenovo Service Bridge before version 4, a bug found in the signature verification logic of the code signing certificate could be exploited by an attacker to insert a forged code signing certificate.
References
Link | Resource |
---|---|
https://support.lenovo.com/us/en/product_security/LEN-10149 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: lenovo
Published: 2017-06-03T00:00:00
Updated: 2017-06-02T23:57:01
Reserved: 2016-09-16T00:00:00
Link: CVE-2016-8231
JSON object: View
NVD Information
Status : Analyzed
Published: 2017-06-04T21:29:00.327
Modified: 2017-06-09T13:39:14.057
Link: CVE-2016-8231
JSON object: View
Redhat Information
No data.
CWE