CVE-2025-0624

high
Published 2025-03-17 · Modified 2025-03-27
CVSS v3
CVSS v4 NEW
not yet in upstream
VIR risk
8.0

Description

RHSA-2025:3367: grub2 security update (Important)

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

Mitigation details

Source: Red Hat Errata — Red Hat Inc. · View original ↗ · Open-Errata-API

Description grub2: net: Out-of-bounds write in grub_net_search_config_file() Red Hat statement Red Hat Product Security team has rated this vulnerability as Important, as an attacker that has access to the same network segment is able to exploit it once netboot is enabled in grub2. CVSS v3: 7.6 (CVSS:3.1/AV:A/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H) Errata / fixed releases ProductPackageAdvisoryReleased…

Description

grub2: net: Out-of-bounds write in grub_net_search_config_file()

Red Hat statement

Red Hat Product Security team has rated this vulnerability as Important, as an attacker that has access to the same network segment is able to exploit it once netboot is enabled in grub2.

CVSS v3: 7.6 (CVSS:3.1/AV:A/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H)

Errata / fixed releases

ProductPackageAdvisoryReleased
Red Hat Enterprise Linux 7 Extended Lifecycle Supportgrub2-1:2.02-0.87.el7_9.15RHSA-2025:33962025-03-31T00:00:00Z
Red Hat Enterprise Linux 8grub2-1:2.02-162.el8_10RHSA-2025:33672025-03-27T00:00:00Z
Red Hat Enterprise Linux 8.2 Advanced Update Supportgrub2-1:2.02-87.el8_2.13RHSA-2025:27842025-03-13T00:00:00Z
Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Supportgrub2-1:2.02-99.el8_4.12RHSA-2025:26552025-03-11T00:00:00Z
Red Hat Enterprise Linux 8.4 Telecommunications Update Servicegrub2-1:2.02-99.el8_4.12RHSA-2025:26552025-03-11T00:00:00Z
Red Hat Enterprise Linux 8.4 Update Services for SAP Solutionsgrub2-1:2.02-99.el8_4.12RHSA-2025:26552025-03-11T00:00:00Z
Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Supportgrub2-1:2.02-123.el8_6.18RHSA-2025:26532025-03-11T00:00:00Z
Red Hat Enterprise Linux 8.6 Telecommunications Update Servicegrub2-1:2.02-123.el8_6.18RHSA-2025:26532025-03-11T00:00:00Z
Red Hat Enterprise Linux 8.6 Update Services for SAP Solutionsgrub2-1:2.02-123.el8_6.18RHSA-2025:26532025-03-11T00:00:00Z
Red Hat Enterprise Linux 8.8 Extended Update Supportgrub2-1:2.02-152.el8_8.2RHSA-2025:25212025-03-10T00:00:00Z
Red Hat Enterprise Linux 9grub2-1:2.06-94.el9_5RHSA-2025:28672025-03-17T00:00:00Z
Red Hat Enterprise Linux 9.0 Update Services for SAP Solutionsgrub2-1:2.06-27.el9_0.22RHSA-2025:27992025-03-13T00:00:00Z
Red Hat Enterprise Linux 9.2 Extended Update Supportgrub2-1:2.06-61.el9_2.10RHSA-2025:28692025-03-17T00:00:00Z
Red Hat Enterprise Linux 9.4 Extended Update Supportgrub2-1:2.06-86.el9_4.2RHSA-2025:26752025-03-12T00:00:00Z
Red Hat OpenShift Container Platform 4.12rhcos-412.86.202503310142-0RHSA-2025:35732025-04-10T00:00:00Z
Red Hat OpenShift Container Platform 4.13rhcos-413.92.202504070146-0RHSA-2025:37802025-04-17T00:00:00Z
Red Hat OpenShift Container Platform 4.14rhcos-414.92.202505141057-0RHSA-2025:77022025-05-21T00:00:00Z
Red Hat OpenShift Container Platform 4.15rhcos-415.92.202504282058-0RHSA-2025:44222025-05-08T00:00:00Z
Red Hat OpenShift Container Platform 4.16rhcos-416.94.202503252048-0RHSA-2025:33012025-04-03T00:00:00Z
Red Hat OpenShift Container Platform 4.17rhcos-417.94.202503241418-0RHSA-2025:32972025-04-03T00:00:00Z
Red Hat OpenShift Container Platform 4.18rhcos-418.94.202504021150-0RHSA-2025:35772025-04-10T00:00:00Z

Package state

ProductPackageState
Red Hat Enterprise Linux 10grub2Not affected

Apply commands

bash fix
Apply RHSA-2025:3396 for Red Hat Enterprise Linux 7 Extended Lifecycle Support
yum update -y grub2
# or:
dnf upgrade -y grub2

Affected

VendorProductVersion
redhatRed Hat Enterprise Linux 10Not affected

OS impact

OSVersionStatusFixed in
redhat rhel9fixed
debian debianbookwormfixed2.06-13+deb12u2
debian debianbullseyeaffected
debian debianforkyfixed2.12-6
debian debiansidfixed2.12-6
debian debiantrixiefixed2.12-6
suse slesaffected
rockylinux rocky9fixed
redhat rhel8fixed

References

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.