REDHAT-BUG-2345854: Integer Overflow
There's an integer overflow in the BFS file system driver. When reading a file with indirect extent map grub2 fails to validate the number of extent entries to be read. A crafted or corrupted BFS filesystem may cause a integer overflow during the file reading, leading to a Heap Ouf-of-Bounds read. As consequence sensitive data may be leaked or the grub2 to crash.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2345854?
The severity of REDHAT-BUG-2345854 is high due to the potential for a heap out-of-bounds read.
How do I fix REDHAT-BUG-2345854?
To fix REDHAT-BUG-2345854, update to the latest version of the GNU GRUB that addresses this integer overflow vulnerability.
What causes the vulnerability REDHAT-BUG-2345854?
REDHAT-BUG-2345854 is caused by an integer overflow in the BFS file system driver when reading file entries.
Which versions of GRUB are affected by REDHAT-BUG-2345854?
Affected versions of GRUB include any that utilize the BFS file system driver with the integer overflow issue.
What are the potential impacts of REDHAT-BUG-2345854?
The potential impacts of REDHAT-BUG-2345854 include system instability and unauthorized access to system memory.