GNU GRUB (aka GRUB2) through 2.12 does not use a constant-time algorithm for grubcryptomemcmp and thus allows side-channel attacks.
GNU GRUB (aka GRUB2) through 2.12 has a heap-based buffer overflow in fs/hfs.c via crafted sblock data in an HFS filesystem.
An attacker with local access to a system (either through a disk or external drive) can present a modified XFS partition to grub-legacy in such a way to exploit a memory corruption in grub’s XFS file system implementation.