CVE-2025-61662
published 2025-11-18CVE-2025-61662: A Use-After-Free vulnerability has been discovered in GRUB's gettext module. This flaw stems from a programming error where the gettext command remains…
PriorityP345high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.21%
10.9th percentile
A Use-After-Free vulnerability has been discovered in GRUB's gettext module. This flaw stems from a programming error where the gettext command remains registered in memory after its module is unloaded. An attacker can exploit this condition by invoking the orphaned command, causing the application to access a memory location that is no longer valid. An attacker could exploit this vulnerability to cause grub to crash, leading to a Denial of Service. Possible data integrity or confidentiality compromise is not discarded.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | grub2 | < grub2 2.14-1 (sid) | grub2 2.14-1 (sid) |
| gnu | grub2 | <= 2.14 | — |
| msrc | azl3_grub2_2.06-25_on_azure_linux_3.0 | — | — |
| msrc | azl3_grub2_2.06-26_on_azure_linux_3.0 | — | — |
| msrc | cbl2_grub2_2.06-15_on_cbl_mariner_2.0 | — | — |
| msrc | cbl2_grub2_2.06-16_on_cbl_mariner_2.0 | — | — |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
vendor_msrc4.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
grub2: Missing unregister call for gettext command may lead to use-after-free
vendor_redhat·2025-11-18·CVSS 7.8
CVE-2025-61662 [HIGH] grub2: Missing unregister call for gettext command may lead to use-after-free
grub2: Missing unregister call for gettext command may lead to use-after-free
A Use-After-Free vulnerability has been discovered in GRUB's gettext module. This flaw stems from a programming error where the gettext command remains registered in memory after its module is unloaded. An attacker can exploit this condition by invoking the orphaned command, causing the application to access a memory location that is no longer valid. An attacker could exploit this vulnerability to cause grub to crash, leading to a Denial of Service. Possible data integrity or confidentiality compromise is not discarded.
A Use-After-Free vulnerability has been discovered in GRUB's gettext module. This flaw stems from a programming error where the gettext command remains registered in memory after its module is u
Microsoft
Grub2: missing unregister call for gettext command may lead to use-after-free
vendor_msrc·2025-11-11·CVSS 4.9
CVE-2025-61662 [HIGH] CWE-416 Grub2: missing unregister call for gettext command may lead to use-after-free
Grub2: missing unregister call for gettext command may lead to use-after-free
Mariner: Mariner
redhat: redhat
Customer Action Required: Yes
Remediation: CBL-Mariner Releases
Reference: https://learn.microsoft.com/en-us/azure/azure-linux/tutorial-azure-linux-upgrade
Debian
CVE-2025-61662: grub2 - A Use-After-Free vulnerability has been discovered in GRUB's gettext module. Thi...
vendor_debian·2025·CVSS 7.8
CVE-2025-61662 [HIGH] CVE-2025-61662: grub2 - A Use-After-Free vulnerability has been discovered in GRUB's gettext module. Thi...
A Use-After-Free vulnerability has been discovered in GRUB's gettext module. This flaw stems from a programming error where the gettext command remains registered in memory after its module is unloaded. An attacker can exploit this condition by invoking the orphaned command, causing the application to access a memory location that is no longer valid. An attacker could exploit this vulnerability to cause grub to crash, leading to a Denial of Service. Possible data integrity or confidentiality compromise is not discarded.
Scope: local
bookworm: open
bullseye: open
forky: open
sid: resolved (fixed in 2.14-1)
trixie: open
OSV
CVE-2025-61662: A Use-After-Free vulnerability has been discovered in GRUB's gettext module
osv·2025-11-18·CVSS 7.8
CVE-2025-61662 [HIGH] CVE-2025-61662: A Use-After-Free vulnerability has been discovered in GRUB's gettext module
A Use-After-Free vulnerability has been discovered in GRUB's gettext module. This flaw stems from a programming error where the gettext command remains registered in memory after its module is unloaded. An attacker can exploit this condition by invoking the orphaned command, causing the application to access a memory location that is no longer valid. An attacker could exploit this vulnerability to cause grub to crash, leading to a Denial of Service. Possible data integrity or confidentiality compromise is not discarded.
GHSA
GHSA-g7mr-vm94-3rv7: A Use-After-Free vulnerability has been discovered in GRUB's gettext module
ghsa_unreviewed·2025-11-18
CVE-2025-61662 [MEDIUM] CWE-416 GHSA-g7mr-vm94-3rv7: A Use-After-Free vulnerability has been discovered in GRUB's gettext module
A Use-After-Free vulnerability has been discovered in GRUB's gettext module. This flaw stems from a programming error where the gettext command remains registered in memory after its module is unloaded. An attacker can exploit this condition by invoking the orphaned command, causing the application to access a memory location that is no longer valid. An attacker could exploit this vulnerability to cause grub to crash, leading to a Denial of Service. Possible data integrity or confidentiality compromise is not discarded.
No detection rules found.
No public exploits indexed.
https://access.redhat.com/errata/RHSA-2026:10097https://access.redhat.com/errata/RHSA-2026:14773https://access.redhat.com/errata/RHSA-2026:15087https://access.redhat.com/errata/RHSA-2026:17596https://access.redhat.com/errata/RHSA-2026:4648https://access.redhat.com/errata/RHSA-2026:4649https://access.redhat.com/errata/RHSA-2026:4652https://access.redhat.com/errata/RHSA-2026:4653https://access.redhat.com/errata/RHSA-2026:4654https://access.redhat.com/errata/RHSA-2026:4760https://access.redhat.com/errata/RHSA-2026:4822https://access.redhat.com/errata/RHSA-2026:4823https://access.redhat.com/errata/RHSA-2026:4830https://access.redhat.com/errata/RHSA-2026:4900https://access.redhat.com/errata/RHSA-2026:4998https://access.redhat.com/errata/RHSA-2026:5074https://access.redhat.com/errata/RHSA-2026:5127https://access.redhat.com/errata/RHSA-2026:5233https://access.redhat.com/errata/RHSA-2026:6492https://access.redhat.com/errata/RHSA-2026:7239https://access.redhat.com/errata/RHSA-2026:7243https://access.redhat.com/security/cve/CVE-2025-61662https://bugzilla.redhat.com/show_bug.cgi?id=2414683https://lists.gnu.org/archive/html/grub-devel/2025-11/msg00155.htmlhttp://www.openwall.com/lists/oss-security/2025/11/18/5
2025-11-18
Published