grub2是GNU社区的一款Linux系统引导程序。 GRUB2 2.04及之前版本中的efilinux组件的‘grub_cmd_initrd’和‘grub_initrd_init’函数存在输入验证错误漏洞。攻击者可利用该漏洞执行任意代码并绕过UEFI安全启动限制。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Ubuntu | grub2 in Ubuntu | 20.04 LTS ~ 2.04-1ubuntu26.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-15705 | 6.4 MEDIUM | GRUB2: avoid loading unsigned kernels when GRUB is booted directly under secureboot withou |
| CVE-2020-15706 | 6.4 MEDIUM | GRUB2 contains a race condition leading to a use-after-free vulnerability which can be tri |
No comments yet