A flaw was found in grub2. The calculation of the...
Moderate severity
Unreviewed
Published
Feb 19, 2025
to the GitHub Advisory Database
•
Updated Feb 19, 2025
Description
Published by the National Vulnerability Database
Feb 19, 2025
Published to the GitHub Advisory Database
Feb 19, 2025
Last updated
Feb 19, 2025
A flaw was found in grub2. The calculation of the translation buffer when reading a language .mo file in grub_gettext_getstr_from_position() may overflow, leading to a Out-of-bound write. This issue can be leveraged by an attacker to overwrite grub2's sensitive heap data, eventually leading to the circumvention of secure boot protections.
References