Логотип exploitDog
bind: "CVE-2021-3697"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2021-3697"

Количество 25

Количество 25

ubuntu логотип

CVE-2021-3697

почти 3 года назад

A crafted JPEG image may lead the JPEG reader to underflow its data pointer, allowing user-controlled data to be written in heap. To a successful to be performed the attacker needs to perform some triage over the heap layout and craft an image with a malicious format and payload. This vulnerability can lead to data corruption and eventual code execution or secure boot circumvention. This flaw affects grub2 versions prior grub-2.12.

CVSS3: 7
EPSS: Низкий
redhat логотип

CVE-2021-3697

около 3 лет назад

A crafted JPEG image may lead the JPEG reader to underflow its data pointer, allowing user-controlled data to be written in heap. To a successful to be performed the attacker needs to perform some triage over the heap layout and craft an image with a malicious format and payload. This vulnerability can lead to data corruption and eventual code execution or secure boot circumvention. This flaw affects grub2 versions prior grub-2.12.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2021-3697

почти 3 года назад

A crafted JPEG image may lead the JPEG reader to underflow its data pointer, allowing user-controlled data to be written in heap. To a successful to be performed the attacker needs to perform some triage over the heap layout and craft an image with a malicious format and payload. This vulnerability can lead to data corruption and eventual code execution or secure boot circumvention. This flaw affects grub2 versions prior grub-2.12.

CVSS3: 7
EPSS: Низкий
msrc логотип

CVE-2021-3697

больше 1 года назад

CVSS3: 7
EPSS: Низкий
debian логотип

CVE-2021-3697

почти 3 года назад

A crafted JPEG image may lead the JPEG reader to underflow its data po ...

CVSS3: 7
EPSS: Низкий
github логотип

GHSA-pr45-j47f-755r

почти 3 года назад

A crafted JPEG image may lead the JPEG reader to underflow its data pointer, allowing user-controlled data to be written in heap. To a successful to be performed the attacker needs to perform some triage over the heap layout and craft an image with a malicious format and payload. This vulnerability can lead to data corruption and eventual code execution or secure boot circumvention. This flaw affects grub2 versions prior grub-2.12.

CVSS3: 7
EPSS: Низкий
fstec логотип

BDU:2022-06891

почти 3 года назад

Уязвимость конфигурационного файла Grub, связанная с записью за границами буфера, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

CVSS3: 7
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:2041-1

около 3 лет назад

Security update for grub2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:2039-1

около 3 лет назад

Security update for grub2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:2038-1

около 3 лет назад

Security update for grub2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:2037-1

около 3 лет назад

Security update for grub2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:2036-1

около 3 лет назад

Security update for grub2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:2074-1

около 3 лет назад

Security update for grub2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:2064-1

около 3 лет назад

Security update for grub2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:2035-1

около 3 лет назад

Security update for grub2

EPSS: Низкий
oracle-oval логотип

ELSA-2023-12952

больше 1 года назад

ELSA-2023-12952: grub2 security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2022-9471

около 3 лет назад

ELSA-2022-9471: grub2 security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2022-9469

около 3 лет назад

ELSA-2022-9469: grub2 security update (IMPORTANT)

EPSS: Низкий
rocky логотип

RLSA-2022:5099

около 3 лет назад

Important: grub2, mokutil, shim, and shim-unsigned-x64 security update

EPSS: Низкий
rocky логотип

RLSA-2022:5095

около 3 лет назад

Important: grub2, mokutil, shim, and shim-unsigned-x64 security update

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2021-3697

A crafted JPEG image may lead the JPEG reader to underflow its data pointer, allowing user-controlled data to be written in heap. To a successful to be performed the attacker needs to perform some triage over the heap layout and craft an image with a malicious format and payload. This vulnerability can lead to data corruption and eventual code execution or secure boot circumvention. This flaw affects grub2 versions prior grub-2.12.

CVSS3: 7
0%
Низкий
почти 3 года назад
redhat логотип
CVE-2021-3697

A crafted JPEG image may lead the JPEG reader to underflow its data pointer, allowing user-controlled data to be written in heap. To a successful to be performed the attacker needs to perform some triage over the heap layout and craft an image with a malicious format and payload. This vulnerability can lead to data corruption and eventual code execution or secure boot circumvention. This flaw affects grub2 versions prior grub-2.12.

CVSS3: 7.5
0%
Низкий
около 3 лет назад
nvd логотип
CVE-2021-3697

A crafted JPEG image may lead the JPEG reader to underflow its data pointer, allowing user-controlled data to be written in heap. To a successful to be performed the attacker needs to perform some triage over the heap layout and craft an image with a malicious format and payload. This vulnerability can lead to data corruption and eventual code execution or secure boot circumvention. This flaw affects grub2 versions prior grub-2.12.

CVSS3: 7
0%
Низкий
почти 3 года назад
msrc логотип
CVSS3: 7
0%
Низкий
больше 1 года назад
debian логотип
CVE-2021-3697

A crafted JPEG image may lead the JPEG reader to underflow its data po ...

CVSS3: 7
0%
Низкий
почти 3 года назад
github логотип
GHSA-pr45-j47f-755r

A crafted JPEG image may lead the JPEG reader to underflow its data pointer, allowing user-controlled data to be written in heap. To a successful to be performed the attacker needs to perform some triage over the heap layout and craft an image with a malicious format and payload. This vulnerability can lead to data corruption and eventual code execution or secure boot circumvention. This flaw affects grub2 versions prior grub-2.12.

CVSS3: 7
0%
Низкий
почти 3 года назад
fstec логотип
BDU:2022-06891

Уязвимость конфигурационного файла Grub, связанная с записью за границами буфера, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

CVSS3: 7
0%
Низкий
почти 3 года назад
suse-cvrf логотип
SUSE-SU-2022:2041-1

Security update for grub2

около 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:2039-1

Security update for grub2

около 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:2038-1

Security update for grub2

около 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:2037-1

Security update for grub2

около 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:2036-1

Security update for grub2

около 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:2074-1

Security update for grub2

около 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:2064-1

Security update for grub2

около 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:2035-1

Security update for grub2

около 3 лет назад
oracle-oval логотип
ELSA-2023-12952

ELSA-2023-12952: grub2 security update (IMPORTANT)

больше 1 года назад
oracle-oval логотип
ELSA-2022-9471

ELSA-2022-9471: grub2 security update (IMPORTANT)

около 3 лет назад
oracle-oval логотип
ELSA-2022-9469

ELSA-2022-9469: grub2 security update (IMPORTANT)

около 3 лет назад
rocky логотип
RLSA-2022:5099

Important: grub2, mokutil, shim, and shim-unsigned-x64 security update

около 3 лет назад
rocky логотип
RLSA-2022:5095

Important: grub2, mokutil, shim, and shim-unsigned-x64 security update

около 3 лет назад

Уязвимостей на страницу