VU#738147: Vendor-signed UEFI Shell applications allow Secure Boot bypass
CERT warns vendor-signed UEFI shells from Acer, Dell, and others can bypass Secure Boot.
CERT/CC VU#738147 says vendor-signed UEFI Shell applications that expose commands such as mm and dmpstore can modify protected pre-boot memory and run untrusted UEFI code when Secure Boot trusts the vendor certificate or Authenticode hash. Binarly and Eclypsium identified affected shells distributed by Acer, Dell, Eurosoft, and Framework, and the note publishes Authenticode and file hashes. Administrators are told to install firmware updates and add the binaries to vendor DBX revocation lists. The note does not report confirmed exploitation.