CVE-2024-45783: Grub2: fs/hfs+: refcount can be decremented twice
A flaw was found in grub2. When failing to mount an HFS+ grub, the hfsplus filesystem driver doesn't properly set an ERRNO value. This issue may lead to a NULL pointer access.
Other sources
When failing to mount a HFS+ grub hfsplus filesystem driver doesn't properly set a ERRNO value. This may lead to a NULL pointer access.
— Red Hat
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-45783?
CVE-2024-45783 is categorized as a moderate severity vulnerability due to its potential to cause system instability.
How do I fix CVE-2024-45783?
To fix CVE-2024-45783, update to the latest version of GRUB2 that includes the security patch addressing this issue.
What systems are affected by CVE-2024-45783?
CVE-2024-45783 affects systems running GNU GRUB2, particularly those utilizing the HFS+ filesystem.
What potential impact does CVE-2024-45783 have?
CVE-2024-45783 may lead to a NULL pointer dereference, causing crashes or malfunctioning of the boot process.
Is there a workaround for CVE-2024-45783?
While a specific workaround for CVE-2024-45783 is not detailed, ensuring proper filesystem configurations may mitigate risks until a patch is applied.