cb
cvebase
.
~
/
products
/
debian
/
rear
Search CVEs, products, detections…
⌘K
pipeline live
Digest
Docs
Home
/
Products
/
debian
/
Debian Rear
Debian Rear vulnerabilities
1 known vulnerability affecting
debian/rear
.
Track
Version
All versions
Total CVEs
1
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM
1
Vulnerabilities
Sort
Most important
Highest Priority
Highest EPSS
Highest CVSS
Newest
Oldest
Page 1 of 1
CVE-2024-23301
P4
MEDIUM
CVSS 5.5
fixed in rear 2.7+dfsg-1+deb12u1 (bookworm)
2024
CVE-2024-23301 [MEDIUM] CVE-2024-23301: rear - Relax-and-Recover (aka ReaR) through 2.7 creates a world-readable initrd when us... Relax-and-Recover (aka ReaR) through 2.7 creates a world-readable initrd when using GRUB_RESCUE=y. This allows local attackers to gain access to system secrets otherwise only readable by root. Scope: local bookworm: resolved (fixed in 2.7+dfsg-1+deb12u1) bullseye: resolved (fixed in 2.6+dfsg-1+deb11u1) forky: resolved (fixed in 2.7+dfsg-1.2) sid: resolved (fixed in 2
debian
Debian Rear vulnerabilities | cvebase