漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Grub2: missing unregister call for normal commands may lead to use-after-free
Vulnerability Description
A vulnerability has been identified in the GRUB2 bootloader's normal command that poses an immediate Denial of Service (DoS) risk. This flaw is a Use-after-Free issue, caused because the normal command is not properly unregistered when the module is unloaded. An attacker who can execute this command can force the system to access memory locations that are no longer valid. Successful exploitation leads directly to system instability, which can result in a complete crash and halt system availability. Impact on the data integrity and confidentiality is also not discarded.
CVSS Information
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L
Vulnerability Type
无效指针解引用
Vulnerability Title
GNU GRUB 安全漏洞
Vulnerability Description
GNU GRUB是GNU社区的一款Linux系统引导程序。 GNU GRUB存在安全漏洞,该漏洞源于normal命令释放后重用,可能导致拒绝服务或系统崩溃。
CVSS Information
N/A
Vulnerability Type
N/A