Search CVE reports
1 – 10 of 64 results
CVE-2025-1125
Medium priorityfs/hfs: Interger overflow may lead to heap based out-of-bounds write
3 affected packages
grub2, grub2-signed, grub2-unsigned
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
grub2 | Not affected | Not affected | Not affected | Not affected | Not affected |
grub2-signed | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
grub2-unsigned | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
CVE-2025-1118
Medium priorityA flaw was found in grub2. Grub's dump command is not blocked when grub is in lockdown mode, which allows the user to read any memory information, and an attacker may leverage this in order to extract signatures, salts, and other...
3 affected packages
grub2, grub2-signed, grub2-unsigned
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
grub2 | Not affected | Not affected | Not affected | Not affected | Not affected |
grub2-signed | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
grub2-unsigned | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
CVE-2025-0690
Medium priorityThe read command is used to read the keyboard input from the user, while reads it keeps the input length in a 32-bit integer value which is further used to reallocate the line buffer to accept the next character. During this...
3 affected packages
grub2, grub2-signed, grub2-unsigned
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
grub2 | Not affected | Not affected | Not affected | Not affected | Not affected |
grub2-signed | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
grub2-unsigned | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
CVE-2025-0689
Medium priorityudf: Heap based buffer overflow in grub_udf_read_block() may lead to arbitrary code execution
3 affected packages
grub2, grub2-signed, grub2-unsigned
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
grub2 | Not affected | Not affected | Not affected | Not affected | Not affected |
grub2-signed | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
grub2-unsigned | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
CVE-2025-0686
Medium priorityromfs: Integer overflow when handling symlinks may lead to heap based out-of-bounds write when reading data
3 affected packages
grub2, grub2-signed, grub2-unsigned
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
grub2 | Not affected | Not affected | Not affected | Not affected | Not affected |
grub2-signed | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
grub2-unsigned | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
CVE-2025-0685
Medium priorityjfs: Integer overflow when handling symlinks may lead to heap based out-of-bounds write when reading data
3 affected packages
grub2, grub2-signed, grub2-unsigned
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
grub2 | Not affected | Not affected | Not affected | Not affected | Not affected |
grub2-signed | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
grub2-unsigned | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
CVE-2025-0684
Medium priorityreiserfs: Integer overflow when handling symlinks may lead to heap based out-of-bounds write when reading data
3 affected packages
grub2, grub2-signed, grub2-unsigned
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
grub2 | Not affected | Not affected | Not affected | Not affected | Not affected |
grub2-signed | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
grub2-unsigned | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
CVE-2025-0678
Medium prioritysquash4: Integer overflow may lead to heap based out-of-bounds write when reading data
3 affected packages
grub2, grub2-signed, grub2-unsigned
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
grub2 | Not affected | Not affected | Not affected | Not affected | Not affected |
grub2-signed | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
grub2-unsigned | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
CVE-2025-0677
Medium priorityA flaw was found in grub2. When performing a symlink lookup, the grub's UFS module checks the inode's data size to allocate the internal buffer to read the file content, however, it fails to check if the symlink data size...
3 affected packages
grub2, grub2-signed, grub2-unsigned
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
grub2 | Not affected | Not affected | Not affected | Not affected | Not affected |
grub2-signed | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
grub2-unsigned | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
CVE-2025-0624
Medium priorityA flaw was found in grub2. During the network boot process, when trying to search for the configuration file, grub copies data from a user controlled environment variable into an internal buffer using the grub_strcpy() function....
3 affected packages
grub2, grub2-signed, grub2-unsigned
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
grub2 | Not affected | Not affected | Not affected | Not affected | Not affected |
grub2-signed | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
grub2-unsigned | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |