A flaw was found in grub2. During the network boot process, when trying to search for the configuration file, grub copies data from a user controlled environment variable into an internal buffer using the grub_strcpy() function. During this step, it fails to consider the environment variable length when allocating the internal buffer, resulting in an out-of-bounds write. If correctly exploited, this issue may result in remote code execution through the same network segment grub is searching for the boot information, which can be used to by-pass secure boot protections.
{
"binaries": [
{
"binary_name": "grub-efi-amd64",
"binary_version": "2.04-1ubuntu44.1.2"
},
{
"binary_name": "grub-efi-amd64-bin",
"binary_version": "2.04-1ubuntu44.1.2"
},
{
"binary_name": "grub-efi-arm64",
"binary_version": "2.04-1ubuntu44.1.2"
},
{
"binary_name": "grub-efi-arm64-bin",
"binary_version": "2.04-1ubuntu44.1.2"
}
]
}{
"binaries": [
{
"binary_name": "grub-efi-amd64",
"binary_version": "2.06-2ubuntu14.1"
},
{
"binary_name": "grub-efi-amd64-bin",
"binary_version": "2.06-2ubuntu14.1"
},
{
"binary_name": "grub-efi-arm64",
"binary_version": "2.06-2ubuntu14.1"
},
{
"binary_name": "grub-efi-arm64-bin",
"binary_version": "2.06-2ubuntu14.1"
}
]
}{
"binaries": [
{
"binary_name": "grub-efi-amd64",
"binary_version": "2.06-2ubuntu14.8"
},
{
"binary_name": "grub-efi-amd64-bin",
"binary_version": "2.06-2ubuntu14.8"
},
{
"binary_name": "grub-efi-arm64",
"binary_version": "2.06-2ubuntu14.8"
},
{
"binary_name": "grub-efi-arm64-bin",
"binary_version": "2.06-2ubuntu14.8"
}
]
}{
"binaries": [
{
"binary_name": "grub-efi-amd64",
"binary_version": "2.06-2ubuntu14.8"
},
{
"binary_name": "grub-efi-amd64-bin",
"binary_version": "2.06-2ubuntu14.8"
},
{
"binary_name": "grub-efi-arm64",
"binary_version": "2.06-2ubuntu14.8"
},
{
"binary_name": "grub-efi-arm64-bin",
"binary_version": "2.06-2ubuntu14.8"
}
]
}{
"binaries": [
{
"binary_name": "grub-efi-amd64",
"binary_version": "2.12-1ubuntu7.3"
},
{
"binary_name": "grub-efi-amd64-bin",
"binary_version": "2.12-1ubuntu7.3"
},
{
"binary_name": "grub-efi-arm64",
"binary_version": "2.12-1ubuntu7.3"
},
{
"binary_name": "grub-efi-arm64-bin",
"binary_version": "2.12-1ubuntu7.3"
}
]
}{
"binaries": [
{
"binary_name": "grub-efi-amd64",
"binary_version": "2.12-5ubuntu11"
},
{
"binary_name": "grub-efi-amd64-bin",
"binary_version": "2.12-5ubuntu11"
},
{
"binary_name": "grub-efi-amd64-unsigned",
"binary_version": "2.12-5ubuntu11"
},
{
"binary_name": "grub-efi-arm64",
"binary_version": "2.12-5ubuntu11"
},
{
"binary_name": "grub-efi-arm64-bin",
"binary_version": "2.12-5ubuntu11"
},
{
"binary_name": "grub-efi-arm64-unsigned",
"binary_version": "2.12-5ubuntu11"
}
]
}{
"binaries": [
{
"binary_name": "grub-efi-amd64",
"binary_version": "2.14~git20250718.0e36779-1ubuntu4"
},
{
"binary_name": "grub-efi-amd64-bin",
"binary_version": "2.14~git20250718.0e36779-1ubuntu4"
},
{
"binary_name": "grub-efi-amd64-unsigned",
"binary_version": "2.14~git20250718.0e36779-1ubuntu4"
},
{
"binary_name": "grub-efi-arm64",
"binary_version": "2.14~git20250718.0e36779-1ubuntu4"
},
{
"binary_name": "grub-efi-arm64-bin",
"binary_version": "2.14~git20250718.0e36779-1ubuntu4"
},
{
"binary_name": "grub-efi-arm64-unsigned",
"binary_version": "2.14~git20250718.0e36779-1ubuntu4"
}
]
}{
"binaries": [
{
"binary_name": "grub-common",
"binary_version": "2.02~beta2-9ubuntu1.21"
},
{
"binary_name": "grub-coreboot",
"binary_version": "2.02~beta2-9ubuntu1.21"
},
{
"binary_name": "grub-coreboot-bin",
"binary_version": "2.02~beta2-9ubuntu1.21"
},
{
"binary_name": "grub-efi",
"binary_version": "2.02~beta2-9ubuntu1.21"
},
{
"binary_name": "grub-efi-amd64",
"binary_version": "2.02~beta2-9ubuntu1.21"
},
{
"binary_name": "grub-efi-amd64-bin",
"binary_version": "2.02~beta2-9ubuntu1.21"
},
{
"binary_name": "grub-efi-arm",
"binary_version": "2.02~beta2-9ubuntu1.21"
},
{
"binary_name": "grub-efi-arm-bin",
"binary_version": "2.02~beta2-9ubuntu1.21"
},
{
"binary_name": "grub-efi-arm64",
"binary_version": "2.02~beta2-9ubuntu1.21"
},
{
"binary_name": "grub-efi-arm64-bin",
"binary_version": "2.02~beta2-9ubuntu1.21"
},
{
"binary_name": "grub-efi-ia32",
"binary_version": "2.02~beta2-9ubuntu1.21"
},
{
"binary_name": "grub-efi-ia32-bin",
"binary_version": "2.02~beta2-9ubuntu1.21"
},
{
"binary_name": "grub-emu",
"binary_version": "2.02~beta2-9ubuntu1.21"
},
{
"binary_name": "grub-firmware-qemu",
"binary_version": "2.02~beta2-9ubuntu1.21"
},
{
"binary_name": "grub-ieee1275",
"binary_version": "2.02~beta2-9ubuntu1.21"
},
{
"binary_name": "grub-ieee1275-bin",
"binary_version": "2.02~beta2-9ubuntu1.21"
},
{
"binary_name": "grub-linuxbios",
"binary_version": "2.02~beta2-9ubuntu1.21"
},
{
"binary_name": "grub-pc",
"binary_version": "2.02~beta2-9ubuntu1.21"
},
{
"binary_name": "grub-pc-bin",
"binary_version": "2.02~beta2-9ubuntu1.21"
},
{
"binary_name": "grub-rescue-pc",
"binary_version": "2.02~beta2-9ubuntu1.21"
},
{
"binary_name": "grub-theme-starfield",
"binary_version": "2.02~beta2-9ubuntu1.21"
},
{
"binary_name": "grub-uboot",
"binary_version": "2.02~beta2-9ubuntu1.21"
},
{
"binary_name": "grub-uboot-bin",
"binary_version": "2.02~beta2-9ubuntu1.21"
},
{
"binary_name": "grub-xen",
"binary_version": "2.02~beta2-9ubuntu1.21"
},
{
"binary_name": "grub-xen-bin",
"binary_version": "2.02~beta2-9ubuntu1.21"
},
{
"binary_name": "grub2",
"binary_version": "2.02~beta2-9ubuntu1.21"
},
{
"binary_name": "grub2-common",
"binary_version": "2.02~beta2-9ubuntu1.21"
}
]
}