Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2015-5281

Опубликовано: 24 нояб. 2015
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 2.6

Описание

The grub2 package before 2.02-0.29 in Red Hat Enterprise Linux (RHEL) 7, when used on UEFI systems, allows local users to bypass intended Secure Boot restrictions and execute non-verified code via a crafted (1) multiboot or (2) multiboot2 module in the configuration file or physically proximate attackers to bypass intended Secure Boot restrictions and execute non-verified code via the (3) boot menu.

РелизСтатусПримечание
devel

not-affected

esm-infra-legacy/trusty

not-affected

esm-infra/xenial

not-affected

precise

ignored

end of life
precise/esm

not-affected

trusty

not-affected

trusty/esm

not-affected

upstream

needs-triage

vivid

ignored

end of life
vivid/stable-phone-overlay

DNE

Показывать по

EPSS

Процентиль: 19%
0.0006
Низкий

2.6 Low

CVSS2

Связанные уязвимости

redhat
почти 10 лет назад

The grub2 package before 2.02-0.29 in Red Hat Enterprise Linux (RHEL) 7, when used on UEFI systems, allows local users to bypass intended Secure Boot restrictions and execute non-verified code via a crafted (1) multiboot or (2) multiboot2 module in the configuration file or physically proximate attackers to bypass intended Secure Boot restrictions and execute non-verified code via the (3) boot menu.

nvd
почти 10 лет назад

The grub2 package before 2.02-0.29 in Red Hat Enterprise Linux (RHEL) 7, when used on UEFI systems, allows local users to bypass intended Secure Boot restrictions and execute non-verified code via a crafted (1) multiboot or (2) multiboot2 module in the configuration file or physically proximate attackers to bypass intended Secure Boot restrictions and execute non-verified code via the (3) boot menu.

debian
почти 10 лет назад

The grub2 package before 2.02-0.29 in Red Hat Enterprise Linux (RHEL) ...

github
больше 3 лет назад

The grub2 package before 2.02-0.29 in Red Hat Enterprise Linux (RHEL) 7, when used on UEFI systems, allows local users to bypass intended Secure Boot restrictions and execute non-verified code via a crafted (1) multiboot or (2) multiboot2 module in the configuration file or physically proximate attackers to bypass intended Secure Boot restrictions and execute non-verified code via the (3) boot menu.

oracle-oval
почти 10 лет назад

ELSA-2015-2401: grub2 security, bug fix, and enhancement update (LOW)

EPSS

Процентиль: 19%
0.0006
Низкий

2.6 Low

CVSS2