Количество 15
Количество 15

BDU:2023-06822
Уязвимость компонента fs/ntfs.c загрузчика операционных систем Grub2, позволяющая нарушителю выполнить произвольный код

ROS-20240405-01
Множественные уязвимости grub

CVE-2023-4692
An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This issue may allow an attacker to present a specially crafted NTFS filesystem image, leading to grub's heap metadata corruption. In some circumstances, the attack may also corrupt the UEFI firmware heap metadata. As a result, arbitrary code execution and secure boot protection bypass may be achieved.

CVE-2023-4692
An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This issue may allow an attacker to present a specially crafted NTFS filesystem image, leading to grub's heap metadata corruption. In some circumstances, the attack may also corrupt the UEFI firmware heap metadata. As a result, arbitrary code execution and secure boot protection bypass may be achieved.

CVE-2023-4692
An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This issue may allow an attacker to present a specially crafted NTFS filesystem image, leading to grub's heap metadata corruption. In some circumstances, the attack may also corrupt the UEFI firmware heap metadata. As a result, arbitrary code execution and secure boot protection bypass may be achieved.

CVE-2023-4692
CVE-2023-4692
An out-of-bounds write flaw was found in grub2's NTFS filesystem drive ...
GHSA-6w7h-fpm5-3ww6
An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This issue may allow an attacker to present a specially crafted NTFS filesystem image, leading to grub's heap metadata corruption. In some circumstances, the attack may also corrupt the UEFI firmware heap metadata. As a result, arbitrary code execution and secure boot protection bypass may be achieved.

SUSE-SU-2023:4141-1
Security update for grub2

SUSE-SU-2023:4140-1
Security update for grub2

SUSE-SU-2023:4130-1
Security update for grub2

SUSE-SU-2023:4085-1
Security update for grub2

RLSA-2024:3184
Moderate: grub2 security update
ELSA-2024-3184
ELSA-2024-3184: grub2 security update (MODERATE)
ELSA-2024-2456
ELSA-2024-2456: grub2 security update (MODERATE)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | BDU:2023-06822 Уязвимость компонента fs/ntfs.c загрузчика операционных систем Grub2, позволяющая нарушителю выполнить произвольный код | CVSS3: 5.3 | 0% Низкий | больше 1 года назад |
![]() | ROS-20240405-01 Множественные уязвимости grub | CVSS3: 5.3 | около 1 года назад | |
![]() | CVE-2023-4692 An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This issue may allow an attacker to present a specially crafted NTFS filesystem image, leading to grub's heap metadata corruption. In some circumstances, the attack may also corrupt the UEFI firmware heap metadata. As a result, arbitrary code execution and secure boot protection bypass may be achieved. | CVSS3: 7.5 | 0% Низкий | больше 1 года назад |
![]() | CVE-2023-4692 An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This issue may allow an attacker to present a specially crafted NTFS filesystem image, leading to grub's heap metadata corruption. In some circumstances, the attack may also corrupt the UEFI firmware heap metadata. As a result, arbitrary code execution and secure boot protection bypass may be achieved. | CVSS3: 7.5 | 0% Низкий | больше 1 года назад |
![]() | CVE-2023-4692 An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This issue may allow an attacker to present a specially crafted NTFS filesystem image, leading to grub's heap metadata corruption. In some circumstances, the attack may also corrupt the UEFI firmware heap metadata. As a result, arbitrary code execution and secure boot protection bypass may be achieved. | CVSS3: 7.5 | 0% Низкий | больше 1 года назад |
![]() | CVSS3: 7.8 | 0% Низкий | больше 1 года назад | |
CVE-2023-4692 An out-of-bounds write flaw was found in grub2's NTFS filesystem drive ... | CVSS3: 7.5 | 0% Низкий | больше 1 года назад | |
GHSA-6w7h-fpm5-3ww6 An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This issue may allow an attacker to present a specially crafted NTFS filesystem image, leading to grub's heap metadata corruption. In some circumstances, the attack may also corrupt the UEFI firmware heap metadata. As a result, arbitrary code execution and secure boot protection bypass may be achieved. | CVSS3: 5.3 | 0% Низкий | больше 1 года назад | |
![]() | SUSE-SU-2023:4141-1 Security update for grub2 | больше 1 года назад | ||
![]() | SUSE-SU-2023:4140-1 Security update for grub2 | больше 1 года назад | ||
![]() | SUSE-SU-2023:4130-1 Security update for grub2 | больше 1 года назад | ||
![]() | SUSE-SU-2023:4085-1 Security update for grub2 | больше 1 года назад | ||
![]() | RLSA-2024:3184 Moderate: grub2 security update | около 1 года назад | ||
ELSA-2024-3184 ELSA-2024-3184: grub2 security update (MODERATE) | около 1 года назад | |||
ELSA-2024-2456 ELSA-2024-2456: grub2 security update (MODERATE) | около 1 года назад |
Уязвимостей на страницу