CVE-2024-49504
published 2024-11-13CVE-2024-49504: grub2 allowed attackers with access to the grub shell to access files on the encrypted disks.
PriorityP428high7CVSS 4.0
AVPACLATNPRNUINVCHVIHVAHSCNSINSANEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
EPSS
0.33%
24.6th percentile
grub2 allowed attackers with access to the grub shell to access files on the encrypted disks.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | grub2 | — | — |
| suse | opensuse_tumbleweed | >= ? < 2.12-28.1 | 2.12-28.1 |
CVSS provenance
nvdv4.07.0HIGHCVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
osv7.0HIGH
vendor_debian7.0LOW
vendor_redhat7.0HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
CVE-2024-49504: grub2 allowed attackers with access to the grub shell to access files on the encrypted disks
osv·2024-11-13·CVSS 7.0
CVE-2024-49504 [HIGH] CVE-2024-49504: grub2 allowed attackers with access to the grub shell to access files on the encrypted disks
grub2 allowed attackers with access to the grub shell to access files on the encrypted disks.
GHSA
GHSA-46pf-6w9r-96r9: grub2 allowed attackers with access to the grub shell to access files on the encrypted disks
ghsa_unreviewed·2024-11-13
CVE-2024-49504 [HIGH] CWE-276 GHSA-46pf-6w9r-96r9: grub2 allowed attackers with access to the grub shell to access files on the encrypted disks
grub2 allowed attackers with access to the grub shell to access files on the encrypted disks.
Red Hat
grub2: grub2 allows bypassing TPM-bound disk encryption on SL(E)M encrypted Images
vendor_redhat·2024-11-13·CVSS 7.0
CVE-2024-49504 [HIGH] CWE-276 grub2: grub2 allows bypassing TPM-bound disk encryption on SL(E)M encrypted Images
grub2: grub2 allows bypassing TPM-bound disk encryption on SL(E)M encrypted Images
grub2 allowed attackers with access to the grub shell to access files on the encrypted disks.
Statement: This vulnerability doesn't affected any version of grub2 as shipped with any Red Hat product.
Package: grub2 (Red Hat Enterprise Linux 7) - Not affected
Package: grub2 (Red Hat Enterprise Linux 8) - Not affected
Package: grub2 (Red Hat Enterprise Linux 9) - Not affected
Package: rhcos (Red Hat OpenShift Container Platform 4) - Not affected
Debian
CVE-2024-49504: grub2 - grub2 allowed attackers with access to the grub shell to access files on the enc...
vendor_debian·2024·CVSS 7.0
CVE-2024-49504 [HIGH] CVE-2024-49504: grub2 - grub2 allowed attackers with access to the grub shell to access files on the enc...
grub2 allowed attackers with access to the grub shell to access files on the encrypted disks.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved
sid: resolved
trixie: resolved
No detection rules found.
No public exploits indexed.
2024-11-13
Published