A flaw was found in grub2 in versions prior to 2.06. Setparam_prefix() in the menu rendering code performs a length calculation on the assumption that expressing a quoted single quote will require 3 characters, while it actually requires 4 characters which allows an attacker to corrupt memory by one byte for each quote in the input. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
References
Link | Resource |
---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=1926263 | Issue Tracking Patch Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZWZ36QK4IKU6MWDWNOOWKPH3WXZBHT2R/ | |
https://security.gentoo.org/glsa/202104-05 | Third Party Advisory |
https://security.netapp.com/advisory/ntap-20220325-0001/ | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
History
No history.
Information
Published : 2021-03-03 17:15
Updated : 2023-11-07 03:29
NVD link : CVE-2021-20233
Mitre link : CVE-2021-20233
CVE.ORG link : CVE-2021-20233
JSON object : View
Products Affected
redhat
- enterprise_linux_server_aus
- enterprise_linux_server_eus
- enterprise_linux
- enterprise_linux_workstation
- enterprise_linux_server_tus
gnu
- grub2
fedoraproject
- fedora
netapp
- ontap_select_deploy_administration_utility
CWE
CWE-787
Out-of-bounds Write