Количество 30
Количество 30
BDU:2023-00286
Уязвимость конфигурационного файла Grub, связанная с записью за границами буфера, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании
ROS-20240208-03
Множественные уязвимости grub2
ALT-PU-2023-1427
ALT-PU-2023-1427: package `grub` update to version 2.06-alt9
ALT-PU-2023-6074
ALT-PU-2023-6074: package `grub` update to version 2.06-alt16
CVE-2021-3695
A crafted 16-bit grayscale PNG image may lead to a out-of-bounds write in the heap area. An attacker may take advantage of that to cause heap data corruption or eventually arbitrary code execution and circumvent secure boot protections. This issue has a high complexity to be exploited as an attacker needs to perform some triage over the heap layout to achieve signifcant results, also the values written into the memory are repeated three times in a row making difficult to produce valid payloads. This flaw affects grub2 versions prior grub-2.12.
CVE-2021-3695
A crafted 16-bit grayscale PNG image may lead to a out-of-bounds write in the heap area. An attacker may take advantage of that to cause heap data corruption or eventually arbitrary code execution and circumvent secure boot protections. This issue has a high complexity to be exploited as an attacker needs to perform some triage over the heap layout to achieve signifcant results, also the values written into the memory are repeated three times in a row making difficult to produce valid payloads. This flaw affects grub2 versions prior grub-2.12.
CVE-2021-3695
A crafted 16-bit grayscale PNG image may lead to a out-of-bounds write in the heap area. An attacker may take advantage of that to cause heap data corruption or eventually arbitrary code execution and circumvent secure boot protections. This issue has a high complexity to be exploited as an attacker needs to perform some triage over the heap layout to achieve signifcant results, also the values written into the memory are repeated three times in a row making difficult to produce valid payloads. This flaw affects grub2 versions prior grub-2.12.
CVE-2021-3695
A crafted 16-bit grayscale PNG image may lead to a out-of-bounds write in the heap area. An attacker may take advantage of that to cause heap data corruption or eventually arbitrary code execution and circumvent secure boot protections. This issue has a high complexity to be exploited as an attacker needs to perform some triage over the heap layout to achieve signifcant results also the values written into the memory are repeated three times in a row making difficult to produce valid payloads. This flaw affects grub2 versions prior grub-2.12.
CVE-2021-3695
A crafted 16-bit grayscale PNG image may lead to a out-of-bounds write ...
ALT-PU-2024-11222
ALT-PU-2024-11222: package `grub` update to version 2.12-alt3
GHSA-xjhh-w3rj-8mxm
A crafted 16-bit grayscale PNG image may lead to a out-of-bounds write in the heap area. An attacker may take advantage of that to cause heap data corruption or eventually arbitrary code execution and circumvent secure boot protections. This issue has a high complexity to be exploited as an attacker needs to perform some triage over the heap layout to achieve signifcant results, also the values written into the memory are repeated three times in a row making difficult to produce valid payloads. This flaw affects grub2 versions prior grub-2.12.
SUSE-SU-2022:2041-1
Security update for grub2
SUSE-SU-2022:2039-1
Security update for grub2
SUSE-SU-2022:2038-1
Security update for grub2
SUSE-SU-2022:2037-1
Security update for grub2
SUSE-SU-2022:2036-1
Security update for grub2
SUSE-SU-2022:2074-1
Security update for grub2
SUSE-SU-2022:2064-1
Security update for grub2
SUSE-SU-2022:2035-1
Security update for grub2
ELSA-2023-12952
ELSA-2023-12952: grub2 security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2023-00286 Уязвимость конфигурационного файла Grub, связанная с записью за границами буфера, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании | CVSS3: 4.5 | 0% Низкий | около 4 лет назад | |
ROS-20240208-03 Множественные уязвимости grub2 | CVSS3: 8.1 | больше 2 лет назад | ||
ALT-PU-2023-1427 ALT-PU-2023-1427: package `grub` update to version 2.06-alt9 | CVSS3: 8.6 | больше 3 лет назад | ||
ALT-PU-2023-6074 ALT-PU-2023-6074: package `grub` update to version 2.06-alt16 | CVSS3: 8.6 | почти 3 года назад | ||
CVE-2021-3695 A crafted 16-bit grayscale PNG image may lead to a out-of-bounds write in the heap area. An attacker may take advantage of that to cause heap data corruption or eventually arbitrary code execution and circumvent secure boot protections. This issue has a high complexity to be exploited as an attacker needs to perform some triage over the heap layout to achieve signifcant results, also the values written into the memory are repeated three times in a row making difficult to produce valid payloads. This flaw affects grub2 versions prior grub-2.12. | CVSS3: 4.5 | 0% Низкий | около 4 лет назад | |
CVE-2021-3695 A crafted 16-bit grayscale PNG image may lead to a out-of-bounds write in the heap area. An attacker may take advantage of that to cause heap data corruption or eventually arbitrary code execution and circumvent secure boot protections. This issue has a high complexity to be exploited as an attacker needs to perform some triage over the heap layout to achieve signifcant results, also the values written into the memory are repeated three times in a row making difficult to produce valid payloads. This flaw affects grub2 versions prior grub-2.12. | CVSS3: 7.5 | 0% Низкий | больше 4 лет назад | |
CVE-2021-3695 A crafted 16-bit grayscale PNG image may lead to a out-of-bounds write in the heap area. An attacker may take advantage of that to cause heap data corruption or eventually arbitrary code execution and circumvent secure boot protections. This issue has a high complexity to be exploited as an attacker needs to perform some triage over the heap layout to achieve signifcant results, also the values written into the memory are repeated three times in a row making difficult to produce valid payloads. This flaw affects grub2 versions prior grub-2.12. | CVSS3: 4.5 | 0% Низкий | около 4 лет назад | |
CVE-2021-3695 A crafted 16-bit grayscale PNG image may lead to a out-of-bounds write in the heap area. An attacker may take advantage of that to cause heap data corruption or eventually arbitrary code execution and circumvent secure boot protections. This issue has a high complexity to be exploited as an attacker needs to perform some triage over the heap layout to achieve signifcant results also the values written into the memory are repeated three times in a row making difficult to produce valid payloads. This flaw affects grub2 versions prior grub-2.12. | CVSS3: 4.5 | 0% Низкий | 7 месяцев назад | |
CVE-2021-3695 A crafted 16-bit grayscale PNG image may lead to a out-of-bounds write ... | CVSS3: 4.5 | 0% Низкий | около 4 лет назад | |
ALT-PU-2024-11222 ALT-PU-2024-11222: package `grub` update to version 2.12-alt3 | CVSS3: 8.6 | около 2 лет назад | ||
GHSA-xjhh-w3rj-8mxm A crafted 16-bit grayscale PNG image may lead to a out-of-bounds write in the heap area. An attacker may take advantage of that to cause heap data corruption or eventually arbitrary code execution and circumvent secure boot protections. This issue has a high complexity to be exploited as an attacker needs to perform some triage over the heap layout to achieve signifcant results, also the values written into the memory are repeated three times in a row making difficult to produce valid payloads. This flaw affects grub2 versions prior grub-2.12. | CVSS3: 4.5 | 0% Низкий | около 4 лет назад | |
SUSE-SU-2022:2041-1 Security update for grub2 | больше 4 лет назад | |||
SUSE-SU-2022:2039-1 Security update for grub2 | больше 4 лет назад | |||
SUSE-SU-2022:2038-1 Security update for grub2 | больше 4 лет назад | |||
SUSE-SU-2022:2037-1 Security update for grub2 | больше 4 лет назад | |||
SUSE-SU-2022:2036-1 Security update for grub2 | больше 4 лет назад | |||
SUSE-SU-2022:2074-1 Security update for grub2 | больше 4 лет назад | |||
SUSE-SU-2022:2064-1 Security update for grub2 | больше 4 лет назад | |||
SUSE-SU-2022:2035-1 Security update for grub2 | больше 4 лет назад | |||
ELSA-2023-12952 ELSA-2023-12952: grub2 security update (IMPORTANT) | почти 3 года назад |
Уязвимостей на страницу