Логотип exploitDog
bind: "CVE-2022-2601"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2022-2601"

Количество 22

Количество 22

ubuntu логотип

CVE-2022-2601

больше 2 лет назад

A buffer overflow was found in grub_font_construct_glyph(). A malicious crafted pf2 font can lead to an overflow when calculating the max_glyph_size value, allocating a smaller than needed buffer for the glyph, this further leads to a buffer overflow and a heap based out-of-bounds write. An attacker may use this vulnerability to circumvent the secure boot mechanism.

CVSS3: 8.6
EPSS: Низкий
redhat логотип

CVE-2022-2601

больше 2 лет назад

A buffer overflow was found in grub_font_construct_glyph(). A malicious crafted pf2 font can lead to an overflow when calculating the max_glyph_size value, allocating a smaller than needed buffer for the glyph, this further leads to a buffer overflow and a heap based out-of-bounds write. An attacker may use this vulnerability to circumvent the secure boot mechanism.

CVSS3: 8.2
EPSS: Низкий
nvd логотип

CVE-2022-2601

больше 2 лет назад

A buffer overflow was found in grub_font_construct_glyph(). A malicious crafted pf2 font can lead to an overflow when calculating the max_glyph_size value, allocating a smaller than needed buffer for the glyph, this further leads to a buffer overflow and a heap based out-of-bounds write. An attacker may use this vulnerability to circumvent the secure boot mechanism.

CVSS3: 8.6
EPSS: Низкий
msrc логотип

CVE-2022-2601

9 месяцев назад

Redhat: CVE-2022-2601 grub2 - Buffer overflow in grub_font_construct_glyph() can lead to out-of-bound write and possible secure boot bypass

CVSS3: 8.6
EPSS: Низкий
debian логотип

CVE-2022-2601

больше 2 лет назад

A buffer overflow was found in grub_font_construct_glyph(). A maliciou ...

CVSS3: 8.6
EPSS: Низкий
github логотип

GHSA-c8f6-x9xm-x27g

больше 2 лет назад

A buffer overflow was found in grub_font_construct_glyph(). A malicious crafted pf2 font can lead to an overflow when calculating the max_glyph_size value, allocating a smaller than needed buffer for the glyph, this further leads to a buffer overflow and a heap based out-of-bounds write. An attacker may use this vulnerability to circumvent the secure boot mechanism.

CVSS3: 8.6
EPSS: Низкий
oracle-oval логотип

ELSA-2024-2002

около 1 года назад

ELSA-2024-2002: grub2 security update (MODERATE)

EPSS: Низкий
fstec логотип

BDU:2022-06819

больше 2 лет назад

Уязвимость функции grub_font_construct_glyph() загрузчика операционных систем Grub2, позволяющая нарушителю выполнить произвольный код

CVSS3: 6.4
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:4302-1

больше 2 лет назад

Security update for grub2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:4219-1

больше 2 лет назад

Security update for grub2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:4218-1

больше 2 лет назад

Security update for grub2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:4144-1

больше 2 лет назад

Security update for grub2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:4143-1

больше 2 лет назад

Security update for grub2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:4142-1

больше 2 лет назад

Security update for grub2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:4141-1

больше 2 лет назад

Security update for grub2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:4140-1

больше 2 лет назад

Security update for grub2

EPSS: Низкий
rocky логотип

RLSA-2023:0752

больше 2 лет назад

Moderate: grub2 security update

EPSS: Низкий
rocky логотип

RLSA-2023:0049

больше 2 лет назад

Moderate: grub2 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2023-12019

больше 2 лет назад

ELSA-2023-12019: grub2 security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2023-0752

около 2 лет назад

ELSA-2023-0752: grub2 security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2022-2601

A buffer overflow was found in grub_font_construct_glyph(). A malicious crafted pf2 font can lead to an overflow when calculating the max_glyph_size value, allocating a smaller than needed buffer for the glyph, this further leads to a buffer overflow and a heap based out-of-bounds write. An attacker may use this vulnerability to circumvent the secure boot mechanism.

CVSS3: 8.6
0%
Низкий
больше 2 лет назад
redhat логотип
CVE-2022-2601

A buffer overflow was found in grub_font_construct_glyph(). A malicious crafted pf2 font can lead to an overflow when calculating the max_glyph_size value, allocating a smaller than needed buffer for the glyph, this further leads to a buffer overflow and a heap based out-of-bounds write. An attacker may use this vulnerability to circumvent the secure boot mechanism.

CVSS3: 8.2
0%
Низкий
больше 2 лет назад
nvd логотип
CVE-2022-2601

A buffer overflow was found in grub_font_construct_glyph(). A malicious crafted pf2 font can lead to an overflow when calculating the max_glyph_size value, allocating a smaller than needed buffer for the glyph, this further leads to a buffer overflow and a heap based out-of-bounds write. An attacker may use this vulnerability to circumvent the secure boot mechanism.

CVSS3: 8.6
0%
Низкий
больше 2 лет назад
msrc логотип
CVE-2022-2601

Redhat: CVE-2022-2601 grub2 - Buffer overflow in grub_font_construct_glyph() can lead to out-of-bound write and possible secure boot bypass

CVSS3: 8.6
0%
Низкий
9 месяцев назад
debian логотип
CVE-2022-2601

A buffer overflow was found in grub_font_construct_glyph(). A maliciou ...

CVSS3: 8.6
0%
Низкий
больше 2 лет назад
github логотип
GHSA-c8f6-x9xm-x27g

A buffer overflow was found in grub_font_construct_glyph(). A malicious crafted pf2 font can lead to an overflow when calculating the max_glyph_size value, allocating a smaller than needed buffer for the glyph, this further leads to a buffer overflow and a heap based out-of-bounds write. An attacker may use this vulnerability to circumvent the secure boot mechanism.

CVSS3: 8.6
0%
Низкий
больше 2 лет назад
oracle-oval логотип
ELSA-2024-2002

ELSA-2024-2002: grub2 security update (MODERATE)

около 1 года назад
fstec логотип
BDU:2022-06819

Уязвимость функции grub_font_construct_glyph() загрузчика операционных систем Grub2, позволяющая нарушителю выполнить произвольный код

CVSS3: 6.4
0%
Низкий
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2022:4302-1

Security update for grub2

больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2022:4219-1

Security update for grub2

больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2022:4218-1

Security update for grub2

больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2022:4144-1

Security update for grub2

больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2022:4143-1

Security update for grub2

больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2022:4142-1

Security update for grub2

больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2022:4141-1

Security update for grub2

больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2022:4140-1

Security update for grub2

больше 2 лет назад
rocky логотип
RLSA-2023:0752

Moderate: grub2 security update

больше 2 лет назад
rocky логотип
RLSA-2023:0049

Moderate: grub2 security update

больше 2 лет назад
oracle-oval логотип
ELSA-2023-12019

ELSA-2023-12019: grub2 security update (IMPORTANT)

больше 2 лет назад
oracle-oval логотип
ELSA-2023-0752

ELSA-2023-0752: grub2 security update (MODERATE)

около 2 лет назад

Уязвимостей на страницу