A flaw was found in grub2. When reading tar files, grub2 allocates an internal buffer for the file name. However, it fails to properly verify the allocation against possible integer overflows. It's possible to cause the allocation length to overflow with a crafted tar file, leading to a heap out-of-bounds write. This flaw eventually allows an attacker to circumvent secure boot protections.
Metrics
Affected Vendors & Products
References
History
Wed, 05 Mar 2025 21:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Tue, 04 Mar 2025 03:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 03 Mar 2025 14:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Title | grub2: fs/tar: Integer Overflow causes Heap OOB Write | Grub2: fs/tar: integer overflow causes heap oob write |
First Time appeared |
Redhat
Redhat enterprise Linux Redhat openshift |
|
CPEs | cpe:/a:redhat:openshift:4 cpe:/o:redhat:enterprise_linux:7 cpe:/o:redhat:enterprise_linux:8 cpe:/o:redhat:enterprise_linux:9 |
|
Vendors & Products |
Redhat
Redhat enterprise Linux Redhat openshift |
|
References |
|
Wed, 19 Feb 2025 14:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A flaw was found in grub2. When reading tar files, grub2 allocates an internal buffer for the file name. However, it fails to properly verify the allocation against possible integer overflows. It's possible to cause the allocation length to overflow with a crafted tar file, leading to a heap out-of-bounds write. This flaw eventually allows an attacker to circumvent secure boot protections. | |
Title | grub2: fs/tar: Integer Overflow causes Heap OOB Write | |
Weaknesses | CWE-190 CWE-787 |
|
References |
| |
Metrics |
threat_severity
|
cvssV3_1
|

Status: PUBLISHED
Assigner: redhat
Published: 2025-03-03T14:18:50.957Z
Updated: 2025-03-05T20:42:44.322Z
Reserved: 2024-09-08T01:57:12.948Z
Link: CVE-2024-45780

Updated: 2025-03-03T15:07:40.419Z

Status : Awaiting Analysis
Published: 2025-03-03T15:15:14.950
Modified: 2025-03-05T21:15:19.167
Link: CVE-2024-45780
