Search CVE reports


Toggle filters

1 – 10 of 64 results


CVE-2025-1125

Medium priority
Needs evaluation

fs/hfs: Interger overflow may lead to heap based out-of-bounds write

3 affected packages

grub2, grub2-signed, grub2-unsigned

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
grub2 Not affected Not affected Not affected Not affected Not affected
grub2-signed Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
grub2-unsigned Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-1118

Medium priority
Needs evaluation

A flaw was found in grub2. Grub's dump command is not blocked when grub is in lockdown mode, which allows the user to read any memory information, and an attacker may leverage this in order to extract signatures, salts, and other...

3 affected packages

grub2, grub2-signed, grub2-unsigned

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
grub2 Not affected Not affected Not affected Not affected Not affected
grub2-signed Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
grub2-unsigned Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-0690

Medium priority
Needs evaluation

The read command is used to read the keyboard input from the user, while reads it keeps the input length in a 32-bit integer value which is further used to reallocate the line buffer to accept the next character. During this...

3 affected packages

grub2, grub2-signed, grub2-unsigned

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
grub2 Not affected Not affected Not affected Not affected Not affected
grub2-signed Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
grub2-unsigned Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-0689

Medium priority
Needs evaluation

udf: Heap based buffer overflow in grub_udf_read_block() may lead to arbitrary code execution

3 affected packages

grub2, grub2-signed, grub2-unsigned

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
grub2 Not affected Not affected Not affected Not affected Not affected
grub2-signed Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
grub2-unsigned Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-0686

Medium priority
Needs evaluation

romfs: Integer overflow when handling symlinks may lead to heap based out-of-bounds write when reading data

3 affected packages

grub2, grub2-signed, grub2-unsigned

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
grub2 Not affected Not affected Not affected Not affected Not affected
grub2-signed Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
grub2-unsigned Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-0685

Medium priority
Needs evaluation

jfs: Integer overflow when handling symlinks may lead to heap based out-of-bounds write when reading data

3 affected packages

grub2, grub2-signed, grub2-unsigned

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
grub2 Not affected Not affected Not affected Not affected Not affected
grub2-signed Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
grub2-unsigned Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-0684

Medium priority
Needs evaluation

reiserfs: Integer overflow when handling symlinks may lead to heap based out-of-bounds write when reading data

3 affected packages

grub2, grub2-signed, grub2-unsigned

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
grub2 Not affected Not affected Not affected Not affected Not affected
grub2-signed Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
grub2-unsigned Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-0678

Medium priority
Needs evaluation

squash4: Integer overflow may lead to heap based out-of-bounds write when reading data

3 affected packages

grub2, grub2-signed, grub2-unsigned

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
grub2 Not affected Not affected Not affected Not affected Not affected
grub2-signed Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
grub2-unsigned Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-0677

Medium priority
Needs evaluation

A flaw was found in grub2. When performing a symlink lookup, the grub's UFS module checks the inode's data size to allocate the internal buffer to read the file content, however, it fails to check if the symlink data size...

3 affected packages

grub2, grub2-signed, grub2-unsigned

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
grub2 Not affected Not affected Not affected Not affected Not affected
grub2-signed Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
grub2-unsigned Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-0624

Medium priority
Needs evaluation

A flaw was found in grub2. During the network boot process, when trying to search for the configuration file, grub copies data from a user controlled environment variable into an internal buffer using the grub_strcpy() function....

3 affected packages

grub2, grub2-signed, grub2-unsigned

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
grub2 Not affected Not affected Not affected Not affected Not affected
grub2-signed Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
grub2-unsigned Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages