CVE-2025-54770
- EPSS 0.02%
- Veröffentlicht 18.11.2025 18:30:10
- Zuletzt bearbeitet 19.11.2025 19:14:59
A vulnerability has been identified in the GRUB2 bootloader's network module that poses an immediate Denial of Service (DoS) risk. This flaw is a Use-after-Free issue, caused because the net_set_vlan command is not properly unregistered when the netw...
CVE-2025-61664
- EPSS 0.02%
- Veröffentlicht 18.11.2025 18:20:55
- Zuletzt bearbeitet 19.11.2025 19:14:59
A vulnerability in the GRUB2 bootloader has been identified in the normal module. This flaw, a memory Use After Free issue, occurs because the normal_exit command is not properly unregistered when its related module is unloaded. An attacker can explo...
CVE-2025-61663
- EPSS 0.02%
- Veröffentlicht 18.11.2025 18:20:52
- Zuletzt bearbeitet 19.11.2025 19:14:59
A vulnerability has been identified in the GRUB2 bootloader's normal command that poses an immediate Denial of Service (DoS) risk. This flaw is a Use-after-Free issue, caused because the normal command is not properly unregistered when the module is ...
CVE-2025-61662
- EPSS 0.02%
- Veröffentlicht 18.11.2025 18:20:48
- Zuletzt bearbeitet 21.01.2026 14:16:05
A Use-After-Free vulnerability has been discovered in GRUB's gettext module. This flaw stems from a programming error where the gettext command remains registered in memory after its module is unloaded. An attacker can exploit this condition by invok...
CVE-2025-61661
- EPSS 0.02%
- Veröffentlicht 18.11.2025 18:20:42
- Zuletzt bearbeitet 19.11.2025 19:14:59
A vulnerability has been identified in the GRUB (Grand Unified Bootloader) component. This flaw occurs because the bootloader mishandles string conversion when reading information from a USB device, allowing an attacker to exploit inconsistent length...
CVE-2025-54771
- EPSS 0.02%
- Veröffentlicht 18.11.2025 18:20:40
- Zuletzt bearbeitet 19.11.2025 19:14:59
A use-after-free vulnerability has been identified in the GNU GRUB (Grand Unified Bootloader). The flaw occurs because the file-closing process incorrectly retains a memory pointer, leaving an invalid reference to a file system structure. An attacker...
CVE-2025-0686
- EPSS 0.03%
- Veröffentlicht 03.03.2025 18:15:30
- Zuletzt bearbeitet 28.07.2025 17:23:26
A flaw was found in grub2. When performing a symlink lookup from a romfs filesystem, grub's romfs filesystem module uses user-controlled parameters from the filesystem geometry to determine the internal buffer size, however, it improperly checks for ...
CVE-2025-0685
- EPSS 0.03%
- Veröffentlicht 03.03.2025 18:15:30
- Zuletzt bearbeitet 28.07.2025 17:23:03
A flaw was found in grub2. When reading data from a jfs filesystem, grub's jfs filesystem module uses user-controlled parameters from the filesystem geometry to determine the internal buffer size, however, it improperly checks for integer overflows. ...
CVE-2025-0684
- EPSS 0.03%
- Veröffentlicht 03.03.2025 18:15:30
- Zuletzt bearbeitet 28.07.2025 17:22:10
A flaw was found in grub2. When performing a symlink lookup from a reiserfs filesystem, grub's reiserfs fs module uses user-controlled parameters from the filesystem geometry to determine the internal buffer size, however, it improperly checks for in...
CVE-2025-0678
- EPSS 0.04%
- Veröffentlicht 03.03.2025 17:15:14
- Zuletzt bearbeitet 25.03.2025 05:15:40
A flaw was found in grub2. When reading data from a squash4 filesystem, grub's squash4 fs module uses user-controlled parameters from the filesystem geometry to determine the internal buffer size, however, it improperly checks for integer overflows. ...