In IGEL OS before 11, Secure Boot can be bypassed because the igel-flash-driver module improperly verifies a cryptographic signature. Ultimately, a crafted root filesystem can be mounted from an unverified SquashFS image.
[
{
"events": [
{
"introduced": "0"
},
{
"fixed": "11.01.100"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"fixed": "10.0.10240.21161"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"fixed": "10.0.10240.21161"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"fixed": "10.0.14393.8519"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"fixed": "10.0.14393.8519"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"fixed": "10.0.17763.7919"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"fixed": "10.0.17763.7919"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"fixed": "10.0.19044.6456"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"fixed": "10.0.19045.6456"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"fixed": "10.0.22621.6060"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"fixed": "10.0.22631.6060"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"fixed": "10.0.26100.6899"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"fixed": "10.0.26200.6899"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "r2"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"fixed": "10.0.14393.8519"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"fixed": "10.0.17763.7919"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"fixed": "10.0.20348.4294"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"fixed": "10.0.25398.1913"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"fixed": "10.0.26100.6899"
}
]
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-47827.json"