Количество 10
Количество 10
CVE-2025-61661
A vulnerability has been identified in the GRUB (Grand Unified Bootloader) component. This flaw occurs because the bootloader mishandles string conversion when reading information from a USB device, allowing an attacker to exploit inconsistent length values. A local attacker can connect a maliciously configured USB device during the boot sequence to trigger this issue. A successful exploitation may lead GRUB to crash, leading to a Denial of Service. Data corruption may be also possible, although given the complexity of the exploit the impact is most likely limited.
CVE-2025-61661
A vulnerability has been identified in the GRUB (Grand Unified Bootloader) component. This flaw occurs because the bootloader mishandles string conversion when reading information from a USB device, allowing an attacker to exploit inconsistent length values. A local attacker can connect a maliciously configured USB device during the boot sequence to trigger this issue. A successful exploitation may lead GRUB to crash, leading to a Denial of Service. Data corruption may be also possible, although given the complexity of the exploit the impact is most likely limited.
CVE-2025-61661
Grub2: grub2: out-of-bounds write via malicious usb device
CVE-2025-61661
A vulnerability has been identified in the GRUB (Grand Unified Bootloa ...
GHSA-cjch-253g-8hp2
A vulnerability has been identified in the GRUB (Grand Unified Bootloader) component. This flaw occurs because the bootloader mishandles string conversion when reading information from a USB device, allowing an attacker to exploit inconsistent length values. A local attacker can connect a maliciously configured USB device during the boot sequence to trigger this issue. A successful exploitation may lead GRUB to crash, leading to a Denial of Service. Data corruption may be also possible, although given the complexity of the exploit the impact is most likely limited.
BDU:2025-14785
Уязвимость загрузчика операционных систем Grub2, связанная с неверным расчетом размера буфера при обработке получаемых пакетов, позволяющая нарушителю вызвать отказ в обслуживании
SUSE-SU-2025:4197-1
Security update for grub2
SUSE-SU-2025:4305-1
Security update for grub2
SUSE-SU-2025:4196-1
Security update for grub2
openSUSE-SU-2025:20163-1
Security update for grub2
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-61661 A vulnerability has been identified in the GRUB (Grand Unified Bootloader) component. This flaw occurs because the bootloader mishandles string conversion when reading information from a USB device, allowing an attacker to exploit inconsistent length values. A local attacker can connect a maliciously configured USB device during the boot sequence to trigger this issue. A successful exploitation may lead GRUB to crash, leading to a Denial of Service. Data corruption may be also possible, although given the complexity of the exploit the impact is most likely limited. | CVSS3: 4.8 | 0% Низкий | 3 месяца назад | |
CVE-2025-61661 A vulnerability has been identified in the GRUB (Grand Unified Bootloader) component. This flaw occurs because the bootloader mishandles string conversion when reading information from a USB device, allowing an attacker to exploit inconsistent length values. A local attacker can connect a maliciously configured USB device during the boot sequence to trigger this issue. A successful exploitation may lead GRUB to crash, leading to a Denial of Service. Data corruption may be also possible, although given the complexity of the exploit the impact is most likely limited. | CVSS3: 4.8 | 0% Низкий | 3 месяца назад | |
CVE-2025-61661 Grub2: grub2: out-of-bounds write via malicious usb device | CVSS3: 4.8 | 0% Низкий | 3 месяца назад | |
CVE-2025-61661 A vulnerability has been identified in the GRUB (Grand Unified Bootloa ... | CVSS3: 4.8 | 0% Низкий | 3 месяца назад | |
GHSA-cjch-253g-8hp2 A vulnerability has been identified in the GRUB (Grand Unified Bootloader) component. This flaw occurs because the bootloader mishandles string conversion when reading information from a USB device, allowing an attacker to exploit inconsistent length values. A local attacker can connect a maliciously configured USB device during the boot sequence to trigger this issue. A successful exploitation may lead GRUB to crash, leading to a Denial of Service. Data corruption may be also possible, although given the complexity of the exploit the impact is most likely limited. | CVSS3: 4.8 | 0% Низкий | 3 месяца назад | |
BDU:2025-14785 Уязвимость загрузчика операционных систем Grub2, связанная с неверным расчетом размера буфера при обработке получаемых пакетов, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 4.8 | 0% Низкий | 3 месяца назад | |
SUSE-SU-2025:4197-1 Security update for grub2 | 2 месяца назад | |||
SUSE-SU-2025:4305-1 Security update for grub2 | 2 месяца назад | |||
SUSE-SU-2025:4196-1 Security update for grub2 | 2 месяца назад | |||
openSUSE-SU-2025:20163-1 Security update for grub2 | около 2 месяцев назад |
Уязвимостей на страницу