CLSA-2025-1751285777

See a problem?
Import Source
https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2025-1751285777.json
JSON Data
https://api.test.osv.dev/v1/vulns/CLSA-2025-1751285777
Upstream
Published
2025-06-30T12:16:22Z
Modified
2026-05-27T11:18:33.545792749Z
Summary
grub2: Fix of 5 CVEs
Details
  • CVE-2024-45781: fs/ufs: OOB write in the heap
  • CVE-2024-45782: fs/hfs: strcpy() using the volume name
  • CVE-2024-56737: fs/hfs: Fix stack OOB write with grub_strcpy()
  • CVE-2025-0678: squash4: Integer overflow may lead to heap based out-of-bounds write when reading data
  • CVE-2025-1125: fs/hfs: Integer overflow may lead to heap based out-of-bounds write
  • Debrand to Cloudlinux
References

Affected packages

TuxCare:RHEL:7
grub2

Package

Name
grub2
Purl
pkg:rpm/tuxcare/grub2?distro=rhel-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:2.02-0.87.el7_9.14.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2025-1751285777.json"
grub2-common

Package

Name
grub2-common
Purl
pkg:rpm/tuxcare/grub2-common?distro=rhel-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:2.02-0.87.el7_9.14.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2025-1751285777.json"
grub2-efi-ia32

Package

Name
grub2-efi-ia32
Purl
pkg:rpm/tuxcare/grub2-efi-ia32?distro=rhel-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:2.02-0.87.el7_9.14.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2025-1751285777.json"
grub2-efi-ia32-cdboot

Package

Name
grub2-efi-ia32-cdboot
Purl
pkg:rpm/tuxcare/grub2-efi-ia32-cdboot?distro=rhel-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:2.02-0.87.el7_9.14.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2025-1751285777.json"
grub2-efi-ia32-modules

Package

Name
grub2-efi-ia32-modules
Purl
pkg:rpm/tuxcare/grub2-efi-ia32-modules?distro=rhel-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:2.02-0.87.el7_9.14.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2025-1751285777.json"
grub2-efi-x64

Package

Name
grub2-efi-x64
Purl
pkg:rpm/tuxcare/grub2-efi-x64?distro=rhel-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:2.02-0.87.el7_9.14.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2025-1751285777.json"
grub2-efi-x64-cdboot

Package

Name
grub2-efi-x64-cdboot
Purl
pkg:rpm/tuxcare/grub2-efi-x64-cdboot?distro=rhel-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:2.02-0.87.el7_9.14.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2025-1751285777.json"
grub2-efi-x64-modules

Package

Name
grub2-efi-x64-modules
Purl
pkg:rpm/tuxcare/grub2-efi-x64-modules?distro=rhel-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:2.02-0.87.el7_9.14.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2025-1751285777.json"
grub2-pc

Package

Name
grub2-pc
Purl
pkg:rpm/tuxcare/grub2-pc?distro=rhel-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:2.02-0.87.el7_9.14.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2025-1751285777.json"
grub2-pc-modules

Package

Name
grub2-pc-modules
Purl
pkg:rpm/tuxcare/grub2-pc-modules?distro=rhel-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:2.02-0.87.el7_9.14.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2025-1751285777.json"
grub2-tools

Package

Name
grub2-tools
Purl
pkg:rpm/tuxcare/grub2-tools?distro=rhel-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:2.02-0.87.el7_9.14.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2025-1751285777.json"
grub2-tools-extra

Package

Name
grub2-tools-extra
Purl
pkg:rpm/tuxcare/grub2-tools-extra?distro=rhel-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:2.02-0.87.el7_9.14.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2025-1751285777.json"
grub2-tools-minimal

Package

Name
grub2-tools-minimal
Purl
pkg:rpm/tuxcare/grub2-tools-minimal?distro=rhel-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:2.02-0.87.el7_9.14.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2025-1751285777.json"