vulnerability

Oracle Linux: CVE-2022-28734: ELSA-2022-9595: grub2 security update (IMPORTANT) (Multiple Advisories)

Severity
7
CVSS
(AV:N/AC:H/Au:N/C:P/I:P/A:C)
Published
2022-06-07
Added
2022-06-08
Modified
2025-01-07

Description

Out-of-bounds write when handling split HTTP headers; When handling split HTTP headers, GRUB2 HTTP code accidentally moves its internal data buffer point by one position. This can lead to a out-of-bound write further when parsing the HTTP request, writing a NULL byte past the buffer. It's conceivable that an attacker controlled set of packets can lead to corruption of the GRUB2's internal memory metadata.
A flaw was found in grub2 when handling split HTTP headers. While processing a split HTTP header, grub2 wrongly advances its control pointer to the internal buffer by one position, which can lead to an out-of-bounds write. This flaw allows an attacker to leverage this issue by crafting a malicious set of HTTP packages making grub2 corrupt its internal memory metadata structure. This leads to data integrity and confidentiality issues or forces grub to crash, resulting in a denial of service attack.

Solution(s)

oracle-linux-upgrade-grub2oracle-linux-upgrade-grub2-commonoracle-linux-upgrade-grub2-efi-aa64oracle-linux-upgrade-grub2-efi-aa64-cdbootoracle-linux-upgrade-grub2-efi-aa64-modulesoracle-linux-upgrade-grub2-efi-ia32oracle-linux-upgrade-grub2-efi-ia32-cdbootoracle-linux-upgrade-grub2-efi-ia32-modulesoracle-linux-upgrade-grub2-efi-x64oracle-linux-upgrade-grub2-efi-x64-cdbootoracle-linux-upgrade-grub2-efi-x64-modulesoracle-linux-upgrade-grub2-pcoracle-linux-upgrade-grub2-pc-modulesoracle-linux-upgrade-grub2-toolsoracle-linux-upgrade-grub2-tools-efioracle-linux-upgrade-grub2-tools-extraoracle-linux-upgrade-grub2-tools-minimal
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.