CVE-2023-4692Heap-based Buffer Overflow in Grub2

Severity
7.8HIGHNVD
CNA7.5
EPSS
0.0%
top 99.83%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 25

Description

An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This issue may allow an attacker to present a specially crafted NTFS filesystem image, leading to grub's heap metadata corruption. In some circumstances, the attack may also corrupt the UEFI firmware heap metadata. As a result, arbitrary code execution and secure boot protection bypass may be achieved.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages2 packages

NVDgnu/grub2< 2.12
Debiangnu/grub2< 2.06-3~deb11u6+3

Also affects: Enterprise Linux 8.0, 9.0

🔴Vulnerability Details

4
CVEList
Grub2: out-of-bounds write at fs/ntfs.c may lead to unsigned code execution2023-10-25
GHSA
GHSA-6w7h-fpm5-3ww6: An out-of-bounds write flaw was found in grub2's NTFS filesystem driver2023-10-25
OSV
CVE-2023-4692: An out-of-bounds write flaw was found in grub2's NTFS filesystem driver2023-10-25
OSV
grub2-signed, grub2-unsigned vulnerabilities2023-10-04

📋Vendor Advisories

4
Microsoft
Grub2: out-of-bounds write at fs/ntfs.c may lead to unsigned code execution2023-10-10
Ubuntu
GRUB2 vulnerabilities2023-10-04
Red Hat
grub2: Out-of-bounds write at fs/ntfs.c may lead to unsigned code execution2023-10-03
Debian
CVE-2023-4692: grub2 - An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This is...2023
CVE-2023-4692 — Heap-based Buffer Overflow in GNU Grub2 | cvebase