First published: Thu Feb 13 2025(Updated: )
A stack overflow flaw was found when reading a BFS file system. A crafted BFS filesystem may lead to an uncontrolled loop, causing grub2 to crash.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Ubuntu GRUB (GNU GRand Unified Bootloader) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-45778 has a high severity level due to the potential for a stack overflow and subsequent system crash.
To fix CVE-2024-45778, update to the latest version of GNU GRUB that addresses this vulnerability.
CVE-2024-45778 affects systems using GNU GRUB, particularly those utilizing the BFS file system.
CVE-2024-45778 can cause an uncontrolled loop leading to a crash of grub2 when processing a crafted BFS filesystem.
Currently, the best workaround for CVE-2024-45778 is to avoid using crafted BFS filesystems until an official patch is applied.