vulnerability

Huawei EulerOS: CVE-2025-54771: grub2 security update

Severity
4
CVSS
(AV:L/AC:M/Au:N/C:P/I:P/A:P)
Published
Mar 16, 2026
Added
Mar 17, 2026
Modified
Apr 1, 2026

Description

A use-after-free vulnerability has been identified in the GNU GRUB (Grand Unified Bootloader). The flaw occurs because the file-closing process incorrectly retains a memory pointer, leaving an invalid reference to a file system structure. An attacker could exploit this vulnerability to cause grub to crash, leading to a Denial of Service. Possible data integrity or confidentiality compromise is not discarded.

Solutions

huawei-euleros-2_0_sp12-upgrade-grub2-commonhuawei-euleros-2_0_sp12-upgrade-grub2-efi-aa64huawei-euleros-2_0_sp12-upgrade-grub2-efi-aa64-moduleshuawei-euleros-2_0_sp12-upgrade-grub2-toolshuawei-euleros-2_0_sp12-upgrade-grub2-tools-extrahuawei-euleros-2_0_sp12-upgrade-grub2-tools-minimal
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.