Vulnerability Database
Blog
FAQ
Docs
RHSA-2024:3184
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2024:3184
Import Source
https://security.access.redhat.com/data/osv/RHSA-2024:3184.json
JSON Data
https://api.test.osv.dev/v1/vulns/RHSA-2024:3184
Related
CVE-2023-4692
CVE-2023-4693
CVE-2024-1048
Published
2024-09-16T16:09:19Z
Modified
2024-11-23T03:30:51Z
Severity
7.5 (High)
CVSS_V3 - CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H
CVSS Calculator
Summary
Red Hat Security Advisory: grub2 security update
Details
References
https://access.redhat.com/errata/RHSA-2024:3184
https://access.redhat.com/security/updates/classification/#moderate
https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/8/html/8.10_release_notes/index
https://bugzilla.redhat.com/show_bug.cgi?id=2236613
https://bugzilla.redhat.com/show_bug.cgi?id=2238343
https://bugzilla.redhat.com/show_bug.cgi?id=2256827
https://issues.redhat.com/browse/RHEL-4314
https://issues.redhat.com/browse/RHEL-4343
https://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_3184.json
https://access.redhat.com/security/cve/CVE-2023-4692
https://www.cve.org/CVERecord?id=CVE-2023-4692
https://nvd.nist.gov/vuln/detail/CVE-2023-4692
https://dfir.ru/2023/10/03/cve-2023-4692-cve-2023-4693-vulnerabilities-in-the-grub-boot-manager/
https://lists.gnu.org/archive/html/grub-devel/2023-10/msg00028.html
https://seclists.org/oss-sec/2023/q4/37
https://access.redhat.com/security/cve/CVE-2023-4693
https://www.cve.org/CVERecord?id=CVE-2023-4693
https://nvd.nist.gov/vuln/detail/CVE-2023-4693
https://access.redhat.com/security/cve/CVE-2024-1048
https://www.cve.org/CVERecord?id=CVE-2024-1048
https://nvd.nist.gov/vuln/detail/CVE-2024-1048
https://www.openwall.com/lists/oss-security/2024/02/06/3
Affected packages
Red Hat:enterprise_linux:8::baseos
/
grub2
Package
Name
grub2
Purl
pkg:rpm/redhat/grub2
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.02-156.el8
Red Hat:enterprise_linux:8::baseos
/
grub2-common
Package
Name
grub2-common
Purl
pkg:rpm/redhat/grub2-common
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.02-156.el8
Red Hat:enterprise_linux:8::baseos
/
grub2-debuginfo
Package
Name
grub2-debuginfo
Purl
pkg:rpm/redhat/grub2-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.02-156.el8
Red Hat:enterprise_linux:8::baseos
/
grub2-debugsource
Package
Name
grub2-debugsource
Purl
pkg:rpm/redhat/grub2-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.02-156.el8
Red Hat:enterprise_linux:8::baseos
/
grub2-efi-aa64
Package
Name
grub2-efi-aa64
Purl
pkg:rpm/redhat/grub2-efi-aa64
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.02-156.el8
Red Hat:enterprise_linux:8::baseos
/
grub2-efi-aa64-cdboot
Package
Name
grub2-efi-aa64-cdboot
Purl
pkg:rpm/redhat/grub2-efi-aa64-cdboot
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.02-156.el8
Red Hat:enterprise_linux:8::baseos
/
grub2-efi-aa64-modules
Package
Name
grub2-efi-aa64-modules
Purl
pkg:rpm/redhat/grub2-efi-aa64-modules
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.02-156.el8
Red Hat:enterprise_linux:8::baseos
/
grub2-efi-ia32
Package
Name
grub2-efi-ia32
Purl
pkg:rpm/redhat/grub2-efi-ia32
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.02-156.el8
Red Hat:enterprise_linux:8::baseos
/
grub2-efi-ia32-cdboot
Package
Name
grub2-efi-ia32-cdboot
Purl
pkg:rpm/redhat/grub2-efi-ia32-cdboot
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.02-156.el8
Red Hat:enterprise_linux:8::baseos
/
grub2-efi-ia32-modules
Package
Name
grub2-efi-ia32-modules
Purl
pkg:rpm/redhat/grub2-efi-ia32-modules
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.02-156.el8
Red Hat:enterprise_linux:8::baseos
/
grub2-efi-x64
Package
Name
grub2-efi-x64
Purl
pkg:rpm/redhat/grub2-efi-x64
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.02-156.el8
Red Hat:enterprise_linux:8::baseos
/
grub2-efi-x64-cdboot
Package
Name
grub2-efi-x64-cdboot
Purl
pkg:rpm/redhat/grub2-efi-x64-cdboot
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.02-156.el8
Red Hat:enterprise_linux:8::baseos
/
grub2-efi-x64-modules
Package
Name
grub2-efi-x64-modules
Purl
pkg:rpm/redhat/grub2-efi-x64-modules
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.02-156.el8
Red Hat:enterprise_linux:8::baseos
/
grub2-pc
Package
Name
grub2-pc
Purl
pkg:rpm/redhat/grub2-pc
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.02-156.el8
Red Hat:enterprise_linux:8::baseos
/
grub2-pc-modules
Package
Name
grub2-pc-modules
Purl
pkg:rpm/redhat/grub2-pc-modules
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.02-156.el8
Red Hat:enterprise_linux:8::baseos
/
grub2-ppc64le
Package
Name
grub2-ppc64le
Purl
pkg:rpm/redhat/grub2-ppc64le
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.02-156.el8
Red Hat:enterprise_linux:8::baseos
/
grub2-ppc64le-modules
Package
Name
grub2-ppc64le-modules
Purl
pkg:rpm/redhat/grub2-ppc64le-modules
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.02-156.el8
Red Hat:enterprise_linux:8::baseos
/
grub2-tools
Package
Name
grub2-tools
Purl
pkg:rpm/redhat/grub2-tools
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.02-156.el8
Red Hat:enterprise_linux:8::baseos
/
grub2-tools-debuginfo
Package
Name
grub2-tools-debuginfo
Purl
pkg:rpm/redhat/grub2-tools-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.02-156.el8
Red Hat:enterprise_linux:8::baseos
/
grub2-tools-efi
Package
Name
grub2-tools-efi
Purl
pkg:rpm/redhat/grub2-tools-efi
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.02-156.el8
Red Hat:enterprise_linux:8::baseos
/
grub2-tools-efi-debuginfo
Package
Name
grub2-tools-efi-debuginfo
Purl
pkg:rpm/redhat/grub2-tools-efi-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.02-156.el8
Red Hat:enterprise_linux:8::baseos
/
grub2-tools-extra
Package
Name
grub2-tools-extra
Purl
pkg:rpm/redhat/grub2-tools-extra
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.02-156.el8
Red Hat:enterprise_linux:8::baseos
/
grub2-tools-extra-debuginfo
Package
Name
grub2-tools-extra-debuginfo
Purl
pkg:rpm/redhat/grub2-tools-extra-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.02-156.el8
Red Hat:enterprise_linux:8::baseos
/
grub2-tools-minimal
Package
Name
grub2-tools-minimal
Purl
pkg:rpm/redhat/grub2-tools-minimal
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.02-156.el8
Red Hat:enterprise_linux:8::baseos
/
grub2-tools-minimal-debuginfo
Package
Name
grub2-tools-minimal-debuginfo
Purl
pkg:rpm/redhat/grub2-tools-minimal-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:2.02-156.el8
RHSA-2024:3184 - OSV