Логотип exploitDog
bind:CVE-2025-0622
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-0622

Количество 11

Количество 11

ubuntu логотип

CVE-2025-0622

6 месяцев назад

A flaw was found in command/gpg. In some scenarios, hooks created by loaded modules are not removed when the related module is unloaded. This flaw allows an attacker to force grub2 to call the hooks once the module that registered it was unloaded, leading to a use-after-free vulnerability. If correctly exploited, this vulnerability may result in arbitrary code execution, eventually allowing the attacker to bypass secure boot protections.

CVSS3: 6.4
EPSS: Низкий
redhat логотип

CVE-2025-0622

6 месяцев назад

A flaw was found in command/gpg. In some scenarios, hooks created by loaded modules are not removed when the related module is unloaded. This flaw allows an attacker to force grub2 to call the hooks once the module that registered it was unloaded, leading to a use-after-free vulnerability. If correctly exploited, this vulnerability may result in arbitrary code execution, eventually allowing the attacker to bypass secure boot protections.

CVSS3: 6.4
EPSS: Низкий
nvd логотип

CVE-2025-0622

6 месяцев назад

A flaw was found in command/gpg. In some scenarios, hooks created by loaded modules are not removed when the related module is unloaded. This flaw allows an attacker to force grub2 to call the hooks once the module that registered it was unloaded, leading to a use-after-free vulnerability. If correctly exploited, this vulnerability may result in arbitrary code execution, eventually allowing the attacker to bypass secure boot protections.

CVSS3: 6.4
EPSS: Низкий
debian логотип

CVE-2025-0622

6 месяцев назад

A flaw was found in command/gpg. In some scenarios, hooks created by l ...

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-vjmw-pmxv-8c6w

6 месяцев назад

A flaw was found in command/gpg. In some scenarios, hooks created by loaded modules are not removed when the related module is unloaded. This flaw allows an attacker to force grub2 to call the hooks once the module that registered it was unloaded, leading to a use-after-free vulnerability. If correctly exploited, this vulnerability may result in arbitrary code execution, eventually allowing the attacker to bypass secure boot protections.

CVSS3: 6.4
EPSS: Низкий
oracle-oval логотип

ELSA-2025-6990

3 месяца назад

ELSA-2025-6990: grub2 security update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0629-1

6 месяцев назад

Security update for grub2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0607-1

6 месяцев назад

Security update for grub2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0588-1

6 месяцев назад

Security update for grub2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0587-1

6 месяцев назад

Security update for grub2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0586-1

6 месяцев назад

Security update for grub2

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-0622

A flaw was found in command/gpg. In some scenarios, hooks created by loaded modules are not removed when the related module is unloaded. This flaw allows an attacker to force grub2 to call the hooks once the module that registered it was unloaded, leading to a use-after-free vulnerability. If correctly exploited, this vulnerability may result in arbitrary code execution, eventually allowing the attacker to bypass secure boot protections.

CVSS3: 6.4
0%
Низкий
6 месяцев назад
redhat логотип
CVE-2025-0622

A flaw was found in command/gpg. In some scenarios, hooks created by loaded modules are not removed when the related module is unloaded. This flaw allows an attacker to force grub2 to call the hooks once the module that registered it was unloaded, leading to a use-after-free vulnerability. If correctly exploited, this vulnerability may result in arbitrary code execution, eventually allowing the attacker to bypass secure boot protections.

CVSS3: 6.4
0%
Низкий
6 месяцев назад
nvd логотип
CVE-2025-0622

A flaw was found in command/gpg. In some scenarios, hooks created by loaded modules are not removed when the related module is unloaded. This flaw allows an attacker to force grub2 to call the hooks once the module that registered it was unloaded, leading to a use-after-free vulnerability. If correctly exploited, this vulnerability may result in arbitrary code execution, eventually allowing the attacker to bypass secure boot protections.

CVSS3: 6.4
0%
Низкий
6 месяцев назад
debian логотип
CVE-2025-0622

A flaw was found in command/gpg. In some scenarios, hooks created by l ...

CVSS3: 6.4
0%
Низкий
6 месяцев назад
github логотип
GHSA-vjmw-pmxv-8c6w

A flaw was found in command/gpg. In some scenarios, hooks created by loaded modules are not removed when the related module is unloaded. This flaw allows an attacker to force grub2 to call the hooks once the module that registered it was unloaded, leading to a use-after-free vulnerability. If correctly exploited, this vulnerability may result in arbitrary code execution, eventually allowing the attacker to bypass secure boot protections.

CVSS3: 6.4
0%
Низкий
6 месяцев назад
oracle-oval логотип
ELSA-2025-6990

ELSA-2025-6990: grub2 security update (MODERATE)

3 месяца назад
suse-cvrf логотип
SUSE-SU-2025:0629-1

Security update for grub2

6 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:0607-1

Security update for grub2

6 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:0588-1

Security update for grub2

6 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:0587-1

Security update for grub2

6 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:0586-1

Security update for grub2

6 месяцев назад

Уязвимостей на страницу