PT-2025-7466 · Grub+5 · Grub+5

Jonathan Bar Or

·

Published

2025-01-01

·

Updated

2025-10-17

·

CVE-2025-0689

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions GRUB (affected versions not specified)
Description A heap-based buffer overflow issue exists in the grub udf read block() function, potentially allowing for arbitrary code execution.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Heap Based Buffer Overflow

Buffer Overflow

Weakness Enumeration

Related Identifiers

ALT-PU-2025-5587
ALT-PU-2025-6088
AZL-57507
AZL-57551
BDU:2025-07125
CVE-2025-0689
OESA-2025-1216
OESA-2025-1217
OESA-2025-1218
OESA-2025-1291
OESA-2025-1292
OPENSUSE-SU-2025:14822-1
OPENSUSE-SU-2025_0586-1
OPENSUSE-SU-2025_0587-1
OPENSUSE-SU-2025_0588-1
OPENSUSE-SU-2025_0607-1
SUSE-SU-2025:01961-1
SUSE-SU-2025:0586-1
SUSE-SU-2025:0587-1
SUSE-SU-2025:0588-1
SUSE-SU-2025:0607-1
SUSE-SU-2025:0629-1
SUSE-SU-2025:20511-1
SUSE-SU-2025:20863-1
SUSE-SU-2025_0586-1
SUSE-SU-2025_0587-1
SUSE-SU-2025_0588-1
SUSE-SU-2025_0607-1
SUSE-SU-2025_0629-1

Affected Products

Alt Linux
Astra Linux
Debian
Grub
Red Os
Suse