EulerOS 2.0 SP15 : shim (EulerOS-SA-2026-2951)

high Nessus Plugin ID 332847

Synopsis

The remote EulerOS host is missing a security update.

Description

According to the versions of the shim packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities :

Issue summary: When a delta CRL that contains a Delta CRL Indicator extension_x000D_ is processed a NULL pointer dereference might happen if the required CRL_x000D_ Number extension is missing._x000D_
_x000D_ Impact summary: A NULL pointer dereference can trigger a crash which_x000D_ leads to a Denial of Service for an application._x000D_
_x000D_ When CRL processing and delta CRL processing is enabled during X.509_x000D_ certificate verification, the delta CRL processing does not check_x000D_ whether the CRL Number extension is NULL before dereferencing it._x000D_ When a malformed delta CRL file is being processed, this parameter_x000D_ can be NULL, causing a NULL pointer dereference._x000D_
_x000D_ Exploiting this issue requires the X509_V_FLAG_USE_DELTAS flag to be enabled in_x000D_ the verification context, the certificate being verified to contain a_x000D_ freshestCRL extension or the base CRL to have the EXFLAG_FRESHEST flag set, and_x000D_ an attacker to provide a malformed CRL to an application that processes it._x000D_
_x000D_ The vulnerability is limited to Denial of Service and cannot be escalated to_x000D_ achieve code execution or memory disclosure. For that reason the issue was_x000D_ assessed as Low severity according to our Security Policy._x000D_
_x000D_ The FIPS modules in 3.6, 3.5, 3.4, 3.3 and 3.0 are not affected by this issue,_x000D_ as the affected code is outside the OpenSSL FIPS module boundary.(CVE-2026-28388)

Tenable has extracted the preceding description block directly from the EulerOS shim security advisory.

Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.

Solution

Update the affected shim packages.

See Also

http://www.nessus.org/u?bf76093e

Plugin Details

Severity: High

ID: 332847

File Name: EulerOS_SA-2026-2951.nasl

Version: 1.1

Type: Local

Published: 8/6/2026

Updated: 8/6/2026

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Low

Score: 3

Percentile: 23.77

CVSS v2

Risk Factor: High

Base Score: 7.8

Temporal Score: 5.8

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:C

CVSS Score Source: CVE-2026-28388

CVSS v3

Risk Factor: High

Base Score: 7.5

Temporal Score: 6.5

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

CPE: cpe:/o:huawei:euleros:2.0, p-cpe:/a:huawei:euleros:shim-aa64-storage, p-cpe:/a:huawei:euleros:shim

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/EulerOS/release, Host/EulerOS/rpm-list, Host/EulerOS/sp

Excluded KB Items: Host/EulerOS/uvp_version

Exploit Ease: No known exploits are available

Patch Publication Date: 8/6/2026

Vulnerability Publication Date: 4/9/2024

Reference Information

CVE: CVE-2026-28388