by @LeSuisse Activity log
- Created automatic suggestion
-
@LeSuisse
removed
2 packages
- grub2_pvgrub_image
- grub2_pvhgrub_image
- @LeSuisse removed maintainer @SigmaSquadron
-
@LeSuisse
added
2 maintainers
- @hehongbo
- @digitalrane
-
@LeSuisse
removed
2 maintainers
- @hehongbo
- @digitalrane
- @LeSuisse accepted
- @LeSuisse published on GitHub
Grub2: use-after-free in grub_file_close()
A use-after-free vulnerability has been identified in the GNU GRUB (Grand Unified Bootloader). The flaw occurs because the file-closing process incorrectly retains a memory pointer, leaving an invalid reference to a file system structure. An attacker could exploit this vulnerability to cause grub to crash, leading to a Denial of Service. Possible data integrity or confidentiality compromise is not discarded.
Affected products
- =<2.14
Package maintainers
-
@hehongbo Hongbo
-
@CertainLach Yaroslav Bolyukin <iam@lach.pw>
Ignored maintainers (1)
-
@SigmaSquadron Fernando Rodrigues <alpha@sigmasquadron.net>