Логотип exploitDog
bind:"CVE-2025-61662"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2025-61662"

Количество 10

Количество 10

ubuntu логотип

CVE-2025-61662

3 месяца назад

A Use-After-Free vulnerability has been discovered in GRUB's gettext module. This flaw stems from a programming error where the gettext command remains registered in memory after its module is unloaded. An attacker can exploit this condition by invoking the orphaned command, causing the application to access a memory location that is no longer valid. An attacker could exploit this vulnerability to cause grub to crash, leading to a Denial of Service. Possible data integrity or confidentiality compromise is not discarded.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2025-61662

3 месяца назад

A Use-After-Free vulnerability has been discovered in GRUB's gettext module. This flaw stems from a programming error where the gettext command remains registered in memory after its module is unloaded. An attacker can exploit this condition by invoking the orphaned command, causing the application to access a memory location that is no longer valid. An attacker could exploit this vulnerability to cause grub to crash, leading to a Denial of Service. Possible data integrity or confidentiality compromise is not discarded.

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2025-61662

3 месяца назад

Grub2: missing unregister call for gettext command may lead to use-after-free

CVSS3: 4.9
EPSS: Низкий
debian логотип

CVE-2025-61662

3 месяца назад

A Use-After-Free vulnerability has been discovered in GRUB's gettext m ...

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-g7mr-vm94-3rv7

3 месяца назад

A Use-After-Free vulnerability has been discovered in GRUB's gettext module. This flaw stems from a programming error where the gettext command remains registered in memory after its module is unloaded. An attacker can exploit this condition by invoking the orphaned command, causing the application to access a memory location that is no longer valid. An attacker could exploit this vulnerability to cause grub to crash, leading to a Denial of Service. Possible data integrity or confidentiality compromise is not discarded.

CVSS3: 4.9
EPSS: Низкий
fstec логотип

BDU:2025-14786

3 месяца назад

Уязвимость модуля gettext загрузчика операционных систем Grub2, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 4.9
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:4197-1

2 месяца назад

Security update for grub2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:4305-1

2 месяца назад

Security update for grub2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:4196-1

2 месяца назад

Security update for grub2

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2025:20163-1

около 2 месяцев назад

Security update for grub2

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-61662

A Use-After-Free vulnerability has been discovered in GRUB's gettext module. This flaw stems from a programming error where the gettext command remains registered in memory after its module is unloaded. An attacker can exploit this condition by invoking the orphaned command, causing the application to access a memory location that is no longer valid. An attacker could exploit this vulnerability to cause grub to crash, leading to a Denial of Service. Possible data integrity or confidentiality compromise is not discarded.

CVSS3: 7.8
0%
Низкий
3 месяца назад
nvd логотип
CVE-2025-61662

A Use-After-Free vulnerability has been discovered in GRUB's gettext module. This flaw stems from a programming error where the gettext command remains registered in memory after its module is unloaded. An attacker can exploit this condition by invoking the orphaned command, causing the application to access a memory location that is no longer valid. An attacker could exploit this vulnerability to cause grub to crash, leading to a Denial of Service. Possible data integrity or confidentiality compromise is not discarded.

CVSS3: 7.8
0%
Низкий
3 месяца назад
msrc логотип
CVE-2025-61662

Grub2: missing unregister call for gettext command may lead to use-after-free

CVSS3: 4.9
0%
Низкий
3 месяца назад
debian логотип
CVE-2025-61662

A Use-After-Free vulnerability has been discovered in GRUB's gettext m ...

CVSS3: 7.8
0%
Низкий
3 месяца назад
github логотип
GHSA-g7mr-vm94-3rv7

A Use-After-Free vulnerability has been discovered in GRUB's gettext module. This flaw stems from a programming error where the gettext command remains registered in memory after its module is unloaded. An attacker can exploit this condition by invoking the orphaned command, causing the application to access a memory location that is no longer valid. An attacker could exploit this vulnerability to cause grub to crash, leading to a Denial of Service. Possible data integrity or confidentiality compromise is not discarded.

CVSS3: 4.9
0%
Низкий
3 месяца назад
fstec логотип
BDU:2025-14786

Уязвимость модуля gettext загрузчика операционных систем Grub2, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 4.9
0%
Низкий
3 месяца назад
suse-cvrf логотип
SUSE-SU-2025:4197-1

Security update for grub2

2 месяца назад
suse-cvrf логотип
SUSE-SU-2025:4305-1

Security update for grub2

2 месяца назад
suse-cvrf логотип
SUSE-SU-2025:4196-1

Security update for grub2

2 месяца назад
suse-cvrf логотип
openSUSE-SU-2025:20163-1

Security update for grub2

около 2 месяцев назад

Уязвимостей на страницу