PT-2026-7909 · Unknown · Grub-Btrfs

Cardosource

·

Publicado

2026-02-12

·

Atualizado

2026-03-04

·

CVE-2026-25828

CVSS v3.1

5.4

Média

VetorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions grub-btrfs versions through 2026-01-31
Description The software does not properly sanitize the root parameter when resolving devices, leading to potential command injection within the initramfs environment. This could allow for unauthorized execution of operating system commands.
Recommendations Update grub-btrfs to a version newer than 2026-01-31.

Exploit

Correção

OS Command Injection

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-25828

Produtos afetados

Grub-Btrfs