CVE-2021-3981
published 2022-03-10CVE-2021-3981: A flaw in grub2 was found where its configuration file, known as grub.cfg, is being created with the wrong permission set allowing non privileged users to read…
PriorityP411low3.3CVSS 3.1
AVLACLPRLUINSUCLINAN
EPSS
0.32%
24.0th percentile
A flaw in grub2 was found where its configuration file, known as grub.cfg, is being created with the wrong permission set allowing non privileged users to read its content. This represents a low severity confidentiality issue, as those users can eventually read any encrypted passwords present in grub.cfg. This flaw affects grub2 2.06 and previous versions. This issue has been fixed in grub upstream but no version with the fix is currently released.
Affected
33 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | grub2 | < grub2 2.06-8 (bookworm) | grub2 2.06-8 (bookworm) |
| fedoraproject | fedora | — | — |
| gnu | grub2 | <= 2.06 | — |
| gnu | grub2 | — | — |
| gnu | grub2 | >= 0 < 2.06-8 | 2.06-8 |
| gnu | grub2 | >= 0 < 2.06-8 | 2.06-8 |
| gnu | grub2 | >= 0 < 2.06-8 | 2.06-8 |
| msrc | azl3_grub2_2.06-14_on_azure_linux_3.0 | — | — |
| msrc | azl3_grub2_2.06-23_on_azure_linux_3.0 | — | — |
| msrc | cbl2_grub2_2.06-5_on_cbl_mariner_2.0 | — | — |
| msrc | cm1_grub2_2.06rc1-8_on_cbl_mariner_1.0 | — | — |
| msrc | grub2-2.06-18.azl3.aarch64.rpm | — | — |
| msrc | grub2-2.06-18.azl3.x86_64.rpm | — | — |
| msrc | grub2-2.06-5.cm2.aarch64.rpm | — | — |
| msrc | grub2-2.06-5.cm2.x86_64.rpm | — | — |
| msrc | grub2-2.06rc1-8.cm1.aarch64.rpm | — | — |
| msrc | grub2-2.06rc1-8.cm1.x86_64.rpm | — | — |
| msrc | grub2-configuration-2.06-18.azl3.aarch64.rpm | — | — |
| msrc | grub2-configuration-2.06-18.azl3.x86_64.rpm | — | — |
| msrc | grub2-efi-2.06-18.azl3.aarch64.rpm | — | — |
| msrc | grub2-efi-2.06-18.azl3.x86_64.rpm | — | — |
| msrc | grub2-efi-2.06-5.cm2.aarch64.rpm | — | — |
| msrc | grub2-efi-2.06-5.cm2.x86_64.rpm | — | — |
| msrc | grub2-efi-2.06rc1-8.cm1.aarch64.rpm | — | — |
| msrc | grub2-efi-2.06rc1-8.cm1.x86_64.rpm | — | — |
CVSS provenance
nvdv3.13.3LOWCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
osv4.5MEDIUM
vendor_ubuntu4.5MEDIUM
vendor_debian3.3LOW
vendor_msrc3.3LOW
vendor_redhat3.3LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
grub2-signed, grub2-unsigned, shim, and shim-signed vulnerability
osv·2023-09-08·CVSS 4.5
CVE-2021-3695 [MEDIUM] grub2-signed, grub2-unsigned, shim, and shim-signed vulnerability
grub2-signed, grub2-unsigned, shim, and shim-signed vulnerability
Daniel Axtens discovered that specially crafted images could cause a
heap-based out-of-bonds write. A local attacker could possibly use
this to circumvent secure boot protections. (CVE-2021-3695)
Daniel Axtens discovered that specially crafted images could cause
out-of-bonds read and write. A local attacker could possibly use this
to circumvent secure boot protections. (CVE-2021-3696)
Daniel Axtens discovered that specially crafted images could cause
buffer underwrite which allows arbitrary data to be written to a heap.
A local attacker could possibly use this to circumvent secure
boot protections. (CVE-2021-3697)
It was discovered that GRUB2 configuration files were created with
the wrong permissions. An attacker could
GHSA
GHSA-6hfm-rxpf-979r: A flaw in grub2 was found where its configuration file, known as grub
ghsa_unreviewed·2022-03-11
CVE-2021-3981 [LOW] CWE-276 GHSA-6hfm-rxpf-979r: A flaw in grub2 was found where its configuration file, known as grub
A flaw in grub2 was found where its configuration file, known as grub.cfg, is being created with the wrong permission set allowing non privileged users to read its content. This represents a low severity confidentiality issue, as those users can eventually read any encrypted passwords present in grub.cfg. This flaw affects grub2 2.06 and previous versions. This issue has been fixed in grub upstream but no version with the fix is currently released.
OSV
CVE-2021-3981: A flaw in grub2 was found where its configuration file, known as grub
osv·2022-03-10·CVSS 3.3
CVE-2021-3981 [LOW] CVE-2021-3981: A flaw in grub2 was found where its configuration file, known as grub
A flaw in grub2 was found where its configuration file, known as grub.cfg, is being created with the wrong permission set allowing non privileged users to read its content. This represents a low severity confidentiality issue, as those users can eventually read any encrypted passwords present in grub.cfg. This flaw affects grub2 2.06 and previous versions. This issue has been fixed in grub upstream but no version with the fix is currently released.
Ubuntu
GRUB2 vulnerabilities
vendor_ubuntu·2023-09-08·CVSS 4.5
CVE-2022-28737 [MEDIUM] GRUB2 vulnerabilities
Title: GRUB2 vulnerabilities
Summary: Several security issues were fixed in GRUB2.
Daniel Axtens discovered that specially crafted images could cause a
heap-based out-of-bonds write. A local attacker could possibly use
this to circumvent secure boot protections. (CVE-2021-3695)
Daniel Axtens discovered that specially crafted images could cause
out-of-bonds read and write. A local attacker could possibly use this
to circumvent secure boot protections. (CVE-2021-3696)
Daniel Axtens discovered that specially crafted images could cause
buffer underwrite which allows arbitrary data to be written to a heap.
A local attacker could possibly use this to circumvent secure
boot protections. (CVE-2021-3697)
It was discovered that GRUB2 configuration files were created with
the wrong permissions.
Microsoft
A flaw in grub2 was found where its configuration file known as grub.cfg is being created with the wrong permission set allowing non privileged users to read its content. This represents a low severit
vendor_msrc·2022-03-08·CVSS 3.3
CVE-2021-3981 [LOW] CWE-276 A flaw in grub2 was found where its configuration file known as grub.cfg is being created with the wrong permission set allowing non privileged users to read its content. This represents a low severit
A flaw in grub2 was found where its configuration file known as grub.cfg is being created with the wrong permission set allowing non privileged users to read its content. This represents a low severity confidentiality issue as those users can eventually read any encrypted passwords present in grub.cfg. This flaw affects grub2 2.06 and previous versions. This issue has been fixed in grub upstream but no version with the fix is currently released.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with
Red Hat
grub2: Incorrect permission in grub.cfg allow unprivileged user to read the file content
vendor_redhat·2021-11-17·CVSS 3.3
CVE-2021-3981 [LOW] CWE-276 grub2: Incorrect permission in grub.cfg allow unprivileged user to read the file content
grub2: Incorrect permission in grub.cfg allow unprivileged user to read the file content
A flaw in grub2 was found where its configuration file, known as grub.cfg, is being created with the wrong permission set allowing non privileged users to read its content. This represents a low severity confidentiality issue, as those users can eventually read any encrypted passwords present in grub.cfg. This flaw affects grub2 2.06 and previous versions. This issue has been fixed in grub upstream but no version with the fix is currently released.
A flaw in grub2 was found where its configuration file, known as grub.cfg, is being created with the wrong permission set allowing non privileged users to read its content. This represents a low severity confidentiality issue, as those users can eventually
Debian
CVE-2021-3981: grub2 - A flaw in grub2 was found where its configuration file, known as grub.cfg, is be...
vendor_debian·2021·CVSS 3.3
CVE-2021-3981 [LOW] CVE-2021-3981: grub2 - A flaw in grub2 was found where its configuration file, known as grub.cfg, is be...
A flaw in grub2 was found where its configuration file, known as grub.cfg, is being created with the wrong permission set allowing non privileged users to read its content. This represents a low severity confidentiality issue, as those users can eventually read any encrypted passwords present in grub.cfg. This flaw affects grub2 2.06 and previous versions. This issue has been fixed in grub upstream but no version with the fix is currently released.
Scope: local
bookworm: resolved (fixed in 2.06-8)
bullseye: open
forky: resolved (fixed in 2.06-8)
sid: resolved (fixed in 2.06-8)
trixie: resolved (fixed in 2.06-8)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.openwall.com/lists/oss-security/2024/01/15/3https://bugzilla.redhat.com/show_bug.cgi?id=2024170https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/AI776L35DDYPCSAAJPJM3ZEQYSFZHBJX/https://security.gentoo.org/glsa/202209-12http://www.openwall.com/lists/oss-security/2024/01/15/3https://bugzilla.redhat.com/show_bug.cgi?id=2024170https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/AI776L35DDYPCSAAJPJM3ZEQYSFZHBJX/https://security.gentoo.org/glsa/202209-12
2022-03-10
Published