Skip to main content

Vendor/product archive

gnu / grub2 CVEs

Beta · best-effort

48 CVEs tagged to gnu / grub20 Critical, 19 High, 27 Medium, 2 Low, 0 Unrated.

CVE-2025-61662

Published Nov 18, 2025

A Use-After-Free vulnerability has been discovered in GRUB's gettext module. This flaw stems from a programming error where the gettext command remains registered in memory after…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2025-0686

Published Mar 3, 2025

A flaw was found in grub2. When performing a symlink lookup from a romfs filesystem, grub's romfs filesystem module uses user-controlled parameters from the filesystem geometry to…

CVSS 6.4 · Medium
evidence mentions
3
Buzz score
25.4
Vendor/product tagsBeta · best-effort

CVE-2025-0685

Published Mar 3, 2025

A flaw was found in grub2. When reading data from a jfs filesystem, grub's jfs filesystem module uses user-controlled parameters from the filesystem geometry to determine the inte…

CVSS 6.4 · Medium
evidence mentions
3
Buzz score
25.4
Vendor/product tagsBeta · best-effort

CVE-2025-0684

Published Mar 3, 2025

A flaw was found in grub2. When performing a symlink lookup from a reiserfs filesystem, grub's reiserfs fs module uses user-controlled parameters from the filesystem geometry to d…

CVSS 6.4 · Medium
evidence mentions
3
Buzz score
25.4
Vendor/product tagsBeta · best-effort

CVE-2025-1125

Published Mar 3, 2025

When reading data from a hfs filesystem, grub's hfs filesystem module uses user-controlled parameters from the filesystem metadata to calculate the internal buffers size, however…

CVSS 7.8 · High
evidence mentions
3
Buzz score
25.4
Vendor/product tagsBeta · best-effort

CVE-2025-0689

Published Mar 3, 2025

When reading data from disk, the grub's UDF filesystem module utilizes the user controlled data length metadata to allocate its internal buffers. In certain scenarios, while itera…

CVSS 7.8 · High
evidence mentions
3
Buzz score
25.4
Vendor/product tagsBeta · best-effort

CVE-2024-45780

Published Mar 3, 2025

A flaw was found in grub2. When reading tar files, grub2 allocates an internal buffer for the file name. However, it fails to properly verify the allocation against possible integ…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-45779

Published Mar 3, 2025

An integer overflow flaw was found in the BFS file system driver in grub2. When reading a file with an indirect extent map, grub2 fails to validate the number of extent entries to…

CVSS 6.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-56738

Published Dec 29, 2024

GNU GRUB (aka GRUB2) through 2.12 does not use a constant-time algorithm for grub_crypto_memcmp and thus allows side-channel attacks.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-56737

Published Dec 29, 2024

GNU GRUB (aka GRUB2) through 2.12 has a heap-based buffer overflow in fs/hfs.c via crafted sblock data in an HFS filesystem.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-4693

Published Oct 25, 2023

An out-of-bounds read flaw was found on grub2's NTFS filesystem driver. This issue may allow a physically present attacker to present a specially crafted NTFS file system image to…

CVSS 5.3 · Medium
evidence mentions
13
Buzz score
46.4
Vendor/product tagsBeta · best-effort

CVE-2023-4692

Published Oct 25, 2023

An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This issue may allow an attacker to present a specially crafted NTFS filesystem image, leading to grub's h…

CVSS 7.5 · High
evidence mentions
13
Buzz score
46.4
Vendor/product tagsBeta · best-effort

CVE-2022-28736

Published Jul 20, 2023

There's a use-after-free vulnerability in grub_cmd_chainloader() function; The chainloader command is used to boot up operating systems that doesn't support multiboot and do not h…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-28735

Published Jul 20, 2023

The GRUB2's shim_lock verifier allows non-kernel files to be loaded on shim-powered secure boot systems. Allowing such files to be loaded may lead to unverified code and modules t…

CVSS 6.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-28733

Published Jul 20, 2023

Integer underflow in grub_net_recv_ip4_packets; A malicious crafted IP packet can lead to an integer underflow in grub_net_recv_ip4_packets() function on rsm->total_len value. Und…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2022-3775

Published Dec 19, 2022

When rendering certain unicode sequences, grub2's font code doesn't proper validate if the informed glyph's width and height is constrained within bitmap size. As consequence an a…

CVSS 7.1 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2022-2601

Published Dec 14, 2022

A buffer overflow was found in grub_font_construct_glyph(). A malicious crafted pf2 font can lead to an overflow when calculating the max_glyph_size value, allocating a smaller th…

CVSS 8.6 · High
Showing 1-25 of 48 CVEsPage 1 of 2