vulnerability
Ubuntu: (Multiple Advisories) (CVE-2020-14308): GRUB 2 vulnerabilities
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
6 | (AV:L/AC:M/Au:M/C:C/I:C/A:C) | Jul 29, 2020 | Aug 5, 2020 | Jan 30, 2025 |
Severity
6
CVSS
(AV:L/AC:M/Au:M/C:C/I:C/A:C)
Published
Jul 29, 2020
Added
Aug 5, 2020
Modified
Jan 30, 2025
Description
In grub2 versions before 2.06 the grub memory allocator doesn't check for possible arithmetic overflows on the requested allocation size. This leads the function to return invalid memory allocations which can be further used to cause possible integrity, confidentiality and availability impacts during the boot process.
Solution(s)
ubuntu-upgrade-grub-efi-amd64-binubuntu-upgrade-grub-efi-amd64-signedubuntu-upgrade-grub-efi-arm-binubuntu-upgrade-grub-efi-arm64-binubuntu-upgrade-grub-efi-arm64-signedubuntu-upgrade-grub-efi-ia32-bin

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.