The vault key is sealed using SHA1 PCRs instead of SHA256 PCRs
Thus an attacker with physical access to an EVE-OS device can try to brute force creating a kernel or rootfs image which produces the same SHA1 PCR but with malicious content.
Fixed in 9.4.3-lts and 10.1.0
None
0.0.0-20230519072751-977f42b07fa9Exploitability
AV:PAC:HPR:LUI:NScope
S:CImpact
C:HI:HA:N6.7/CVSS:3.1/AV:P/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:N