Логотип exploitDog
bind:"BDU:2023-06822" OR bind:"CVE-2023-4692"
Консоль
Логотип exploitDog

exploitDog

bind:"BDU:2023-06822" OR bind:"CVE-2023-4692"

Количество 15

Количество 15

fstec логотип

BDU:2023-06822

больше 1 года назад

Уязвимость компонента fs/ntfs.c загрузчика операционных систем Grub2, позволяющая нарушителю выполнить произвольный код

CVSS3: 5.3
EPSS: Низкий
redos логотип

ROS-20240405-01

около 1 года назад

Множественные уязвимости grub

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2023-4692

больше 1 года назад

An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This issue may allow an attacker to present a specially crafted NTFS filesystem image, leading to grub's heap metadata corruption. In some circumstances, the attack may also corrupt the UEFI firmware heap metadata. As a result, arbitrary code execution and secure boot protection bypass may be achieved.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2023-4692

больше 1 года назад

An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This issue may allow an attacker to present a specially crafted NTFS filesystem image, leading to grub's heap metadata corruption. In some circumstances, the attack may also corrupt the UEFI firmware heap metadata. As a result, arbitrary code execution and secure boot protection bypass may be achieved.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2023-4692

больше 1 года назад

An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This issue may allow an attacker to present a specially crafted NTFS filesystem image, leading to grub's heap metadata corruption. In some circumstances, the attack may also corrupt the UEFI firmware heap metadata. As a result, arbitrary code execution and secure boot protection bypass may be achieved.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2023-4692

больше 1 года назад

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2023-4692

больше 1 года назад

An out-of-bounds write flaw was found in grub2's NTFS filesystem drive ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-6w7h-fpm5-3ww6

больше 1 года назад

An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This issue may allow an attacker to present a specially crafted NTFS filesystem image, leading to grub's heap metadata corruption. In some circumstances, the attack may also corrupt the UEFI firmware heap metadata. As a result, arbitrary code execution and secure boot protection bypass may be achieved.

CVSS3: 5.3
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:4141-1

больше 1 года назад

Security update for grub2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:4140-1

больше 1 года назад

Security update for grub2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:4130-1

больше 1 года назад

Security update for grub2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:4085-1

больше 1 года назад

Security update for grub2

EPSS: Низкий
rocky логотип

RLSA-2024:3184

около 1 года назад

Moderate: grub2 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2024-3184

около 1 года назад

ELSA-2024-3184: grub2 security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2024-2456

около 1 года назад

ELSA-2024-2456: grub2 security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2023-06822

Уязвимость компонента fs/ntfs.c загрузчика операционных систем Grub2, позволяющая нарушителю выполнить произвольный код

CVSS3: 5.3
0%
Низкий
больше 1 года назад
redos логотип
ROS-20240405-01

Множественные уязвимости grub

CVSS3: 5.3
около 1 года назад
ubuntu логотип
CVE-2023-4692

An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This issue may allow an attacker to present a specially crafted NTFS filesystem image, leading to grub's heap metadata corruption. In some circumstances, the attack may also corrupt the UEFI firmware heap metadata. As a result, arbitrary code execution and secure boot protection bypass may be achieved.

CVSS3: 7.5
0%
Низкий
больше 1 года назад
redhat логотип
CVE-2023-4692

An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This issue may allow an attacker to present a specially crafted NTFS filesystem image, leading to grub's heap metadata corruption. In some circumstances, the attack may also corrupt the UEFI firmware heap metadata. As a result, arbitrary code execution and secure boot protection bypass may be achieved.

CVSS3: 7.5
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2023-4692

An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This issue may allow an attacker to present a specially crafted NTFS filesystem image, leading to grub's heap metadata corruption. In some circumstances, the attack may also corrupt the UEFI firmware heap metadata. As a result, arbitrary code execution and secure boot protection bypass may be achieved.

CVSS3: 7.5
0%
Низкий
больше 1 года назад
msrc логотип
CVSS3: 7.8
0%
Низкий
больше 1 года назад
debian логотип
CVE-2023-4692

An out-of-bounds write flaw was found in grub2's NTFS filesystem drive ...

CVSS3: 7.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-6w7h-fpm5-3ww6

An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This issue may allow an attacker to present a specially crafted NTFS filesystem image, leading to grub's heap metadata corruption. In some circumstances, the attack may also corrupt the UEFI firmware heap metadata. As a result, arbitrary code execution and secure boot protection bypass may be achieved.

CVSS3: 5.3
0%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2023:4141-1

Security update for grub2

больше 1 года назад
suse-cvrf логотип
SUSE-SU-2023:4140-1

Security update for grub2

больше 1 года назад
suse-cvrf логотип
SUSE-SU-2023:4130-1

Security update for grub2

больше 1 года назад
suse-cvrf логотип
SUSE-SU-2023:4085-1

Security update for grub2

больше 1 года назад
rocky логотип
RLSA-2024:3184

Moderate: grub2 security update

около 1 года назад
oracle-oval логотип
ELSA-2024-3184

ELSA-2024-3184: grub2 security update (MODERATE)

около 1 года назад
oracle-oval логотип
ELSA-2024-2456

ELSA-2024-2456: grub2 security update (MODERATE)

около 1 года назад

Уязвимостей на страницу