Описание
An attacker with local access to a system (either through a disk or external drive) can present a modified XFS partition to grub-legacy in such a way to exploit a memory corruption in grub’s XFS file system implementation.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| grub | unfixed | package |
Примечания
https://xenbits.xenproject.org/xsa/advisory-443.html
grub-legancy has not secure boot support. The CVE is specific for the src:grub
issue "An attacker with local access to a system (either through a disk or external
drive) can present a modified XFS partition to grub-legacy in such a way to exploit
a memory corruption in grub's XFS file system implementation."
EPSS
Связанные уязвимости
An attacker with local access to a system (either through a disk or external drive) can present a modified XFS partition to grub-legacy in such a way to exploit a memory corruption in grub’s XFS file system implementation.
An attacker with local access to a system (either through a disk or external drive) can present a modified XFS partition to grub-legacy in such a way to exploit a memory corruption in grub’s XFS file system implementation.
EPSS