Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-3775

Опубликовано: 15 нояб. 2022
Источник: redhat
CVSS3: 7.1
EPSS Низкий

Описание

When rendering certain unicode sequences, grub2's font code doesn't proper validate if the informed glyph's width and height is constrained within bitmap size. As consequence an attacker can craft an input which will lead to a out-of-bounds write into grub2's heap, leading to memory corruption and availability issues. Although complex, arbitrary code execution could not be discarded.

A flaw was found in the grub2 font code. When rendering certain unicode sequences, it fails to properly validate the font width and height. These values are further used to access the font buffer, causing possible out-of-bounds writes. A malicious actor may craft a font capable of triggering this issue, allowing modifications in unauthorized memory segments, causing data integrity problems or leading to denial of service.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 7grub2Out of support scope
Red Hat Enterprise Linux 8grub2FixedRHSA-2023:004909.01.2023
Red Hat Enterprise Linux 8.1 Update Services for SAP Solutionsgrub2FixedRHSA-2022:849416.11.2022
Red Hat Enterprise Linux 8.2 Advanced Update Supportgrub2FixedRHSA-2022:880006.12.2022
Red Hat Enterprise Linux 8.2 Telecommunications Update Servicegrub2FixedRHSA-2022:880006.12.2022
Red Hat Enterprise Linux 8.2 Update Services for SAP Solutionsgrub2FixedRHSA-2022:880006.12.2022
Red Hat Enterprise Linux 8.4 Extended Update Supportgrub2FixedRHSA-2023:004709.01.2023
Red Hat Enterprise Linux 8.6 Extended Update Supportgrub2FixedRHSA-2023:004809.01.2023
Red Hat Enterprise Linux 9grub2FixedRHSA-2023:075214.02.2023
Red Hat Enterprise Linux 9.0 Extended Update Supportgrub2FixedRHSA-2022:897813.12.2022

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-787
https://bugzilla.redhat.com/show_bug.cgi?id=2138880grub2: Heap based out-of-bounds write when redering certain unicode sequences

EPSS

Процентиль: 21%
0.00066
Низкий

7.1 High

CVSS3

Связанные уязвимости

CVSS3: 7.1
ubuntu
больше 2 лет назад

When rendering certain unicode sequences, grub2's font code doesn't proper validate if the informed glyph's width and height is constrained within bitmap size. As consequence an attacker can craft an input which will lead to a out-of-bounds write into grub2's heap, leading to memory corruption and availability issues. Although complex, arbitrary code execution could not be discarded.

CVSS3: 7.1
nvd
больше 2 лет назад

When rendering certain unicode sequences, grub2's font code doesn't proper validate if the informed glyph's width and height is constrained within bitmap size. As consequence an attacker can craft an input which will lead to a out-of-bounds write into grub2's heap, leading to memory corruption and availability issues. Although complex, arbitrary code execution could not be discarded.

CVSS3: 7.1
msrc
10 месяцев назад

Redhat: CVE-2022-3775 grub2 - Heap based out-of-bounds write when rendering certain Unicode sequences

CVSS3: 7.1
debian
больше 2 лет назад

When rendering certain unicode sequences, grub2's font code doesn't pr ...

CVSS3: 7.1
github
больше 2 лет назад

When rendering certain unicode sequences, grub2's font code doesn't proper validate if the informed glyph's width and height is constrained within bitmap size. As consequence an attacker can craft an input which will lead to a out-of-bounds write into grub2's heap, leading to memory corruption and availability issues. Although complex, arbitrary code execution could not be discarded.

EPSS

Процентиль: 21%
0.00066
Низкий

7.1 High

CVSS3