VU#738147: Vendor-signed UEFI Shell applications allow Secure Boot bypass
Overview Vendor-signed UEFI Shell applications may allow an attacker to bypass Secure Boot protections by abusing commands such as mm (Memory Modify). On systems that trust the affected vendor’s