CVE-2014-3677: Red Hat Shim

High severity, CVSS 7.5. EPSS: 2.7% chance of exploitation in the next 30 days.

Unspecified vulnerability in Shim might allow attackers to execute arbitrary code via a crafted MOK list, which triggers memory corruption.

Affected products

  • Red Hat Shim: from 0.3, before 0.8 (fixed in 0.8)

Published 2014-10-22. Last modified 2026-06-17.