Gnu

Grub2

54 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.12%
  • Veröffentlicht 02.10.2026 10:34:23
  • Zuletzt bearbeitet 02.10.2026 18:44:11

A local attacker with control over GRUB's configuration can bypass lockdown restrictions when booting with Secure Boot and load an unsigned GRUB module, while GRUB continues to report lockdown is enabled. The vulnerability is caused by insufficie...

  • EPSS 0.15%
  • Veröffentlicht 18.11.2025 18:30:10
  • Zuletzt bearbeitet 01.09.2026 12:17:24

A vulnerability has been identified in the GRUB2 bootloader's network module that poses an immediate Denial of Service (DoS) risk. This flaw is a Use-after-Free issue, caused because the net_set_vlan command is not properly unregistered when the netw...

  • EPSS 0.14%
  • Veröffentlicht 18.11.2025 18:20:55
  • Zuletzt bearbeitet 01.09.2026 12:17:29

A vulnerability in the GRUB2 bootloader has been identified in the normal module. This flaw, a memory Use After Free issue, occurs because the normal_exit command is not properly unregistered when its related module is unloaded. An attacker can explo...

  • EPSS 0.13%
  • Veröffentlicht 18.11.2025 18:20:52
  • Zuletzt bearbeitet 01.09.2026 12:17:28

A vulnerability has been identified in the GRUB2 bootloader's normal command that poses an immediate Denial of Service (DoS) risk. This flaw is a Use-after-Free issue, caused because the normal command is not properly unregistered when the module is ...

  • EPSS 0.2%
  • Veröffentlicht 18.11.2025 18:20:48
  • Zuletzt bearbeitet 01.09.2026 12:17:28

A Use-After-Free vulnerability has been discovered in GRUB's gettext module. This flaw stems from a programming error where the gettext command remains registered in memory after its module is unloaded. An attacker can exploit this condition by invok...

  • EPSS 0.19%
  • Veröffentlicht 18.11.2025 18:20:42
  • Zuletzt bearbeitet 01.09.2026 12:17:27

A vulnerability has been identified in the GRUB (Grand Unified Bootloader) component. This flaw occurs because the bootloader mishandles string conversion when reading information from a USB device, allowing an attacker to exploit inconsistent length...

  • EPSS 0.15%
  • Veröffentlicht 18.11.2025 18:20:40
  • Zuletzt bearbeitet 01.09.2026 12:17:24

A use-after-free vulnerability has been identified in the GNU GRUB (Grand Unified Bootloader). The flaw occurs because the file-closing process incorrectly retains a memory pointer, leaving an invalid reference to a file system structure. An attacker...

  • EPSS 0.27%
  • Veröffentlicht 03.03.2025 18:15:30
  • Zuletzt bearbeitet 30.06.2026 00:16:50

A flaw was found in grub2. When performing a symlink lookup from a romfs filesystem, grub's romfs filesystem module uses user-controlled parameters from the filesystem geometry to determine the internal buffer size, however, it improperly checks for ...

  • EPSS 0.28%
  • Veröffentlicht 03.03.2025 18:15:30
  • Zuletzt bearbeitet 30.06.2026 00:16:50

A flaw was found in grub2. When reading data from a jfs filesystem, grub's jfs filesystem module uses user-controlled parameters from the filesystem geometry to determine the internal buffer size, however, it improperly checks for integer overflows. ...

  • EPSS 0.27%
  • Veröffentlicht 03.03.2025 18:15:30
  • Zuletzt bearbeitet 30.06.2026 00:16:50

A flaw was found in grub2. When performing a symlink lookup from a reiserfs filesystem, grub's reiserfs fs module uses user-controlled parameters from the filesystem geometry to determine the internal buffer size, however, it improperly checks for in...