漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Grub2: grub2: out-of-bounds write via malicious usb device
Vulnerability Description
A vulnerability has been identified in the GRUB (Grand Unified Bootloader) component. This flaw occurs because the bootloader mishandles string conversion when reading information from a USB device, allowing an attacker to exploit inconsistent length values. A local attacker can connect a maliciously configured USB device during the boot sequence to trigger this issue. A successful exploitation may lead GRUB to crash, leading to a Denial of Service. Data corruption may be also possible, although given the complexity of the exploit the impact is most likely limited.
CVSS Information
CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:H
Vulnerability Type
缓冲区大小计算不正确
Vulnerability Title
GNU GRUB 安全漏洞
Vulnerability Description
GNU GRUB是GNU社区的一款Linux系统引导程序。 GNU GRUB存在安全漏洞,该漏洞源于USB设备字符串转换处理不当,可能导致拒绝服务或数据损坏。
CVSS Information
N/A
Vulnerability Type
N/A