CVE-2025-0624

EUVD-2025-4653
A flaw was found in grub2. During the network boot process, when trying to search for the configuration file, grub copies data from a user controlled environment variable into an internal buffer using the grub_strcpy() function. During this step, it fails to consider the environment variable length when allocating the internal buffer, resulting in an out-of-bounds write. If correctly exploited, this issue may result in remote code execution through the same network segment grub is searching for the boot information, which can be used to by-pass secure boot protections.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.6 HIGH
ADJACENT_NETWORK
HIGH
HIGH
CVSS:3.1/AV:A/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H
Awaiting analysis
This vulnerability is currently awaiting analysis.
Base Score
CVSS 3.x
EPSS Score
Percentile: 71%
Debian logo
Debian Releases
Debian Product
Codename
grub2
bookworm
2.06-13+deb12u2
fixed
bookworm (security)
vulnerable
bullseye
vulnerable
bullseye (security)
vulnerable
forky
2.14-2
fixed
sid
2.14-2
fixed
trixie
2.12-9+deb13u2
fixed
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
grub2
suse enterprise desktop 15 SP6
2.12-150600.8.18.2
fixed
suse enterprise desktop 15 SP7
2.12-150700.17.4
fixed
suse enterprise sap 15 SP6
2.12-150600.8.18.2
fixed
suse enterprise sap 15 SP7
2.12-150700.17.4
fixed
suse enterprise server 12 SP3
2.02-150.1
fixed
suse enterprise server 12 SP5
2.02-181.2
fixed
suse enterprise server 15 SP3
2.04-150300.22.52.3
fixed
suse enterprise server 15 SP4
2.06-150400.11.55.2
fixed
suse enterprise server 15 SP5
2.06-150500.29.43.2
fixed
suse enterprise server 15 SP6
2.12-150600.8.18.2
fixed
suse enterprise server 15 SP7
2.12-150700.17.4
fixed
grub2-arm64-efi
suse enterprise desktop 15 SP6
2.12-150600.8.18.2
fixed
suse enterprise desktop 15 SP7
2.12-150700.17.4
fixed
suse enterprise sap 15 SP6
2.12-150600.8.18.2
fixed
suse enterprise sap 15 SP7
2.12-150700.17.4
fixed
suse enterprise server 12 SP5
2.02-181.2
fixed
suse enterprise server 15 SP3
2.04-150300.22.52.3
fixed
suse enterprise server 15 SP4
2.06-150400.11.55.2
fixed
suse enterprise server 15 SP5
2.06-150500.29.43.2
fixed
suse enterprise server 15 SP6
2.12-150600.8.18.2
fixed
suse enterprise server 15 SP7
2.12-150700.17.4
fixed
grub2-i386-pc
suse enterprise desktop 15 SP6
2.12-150600.8.18.2
fixed
suse enterprise desktop 15 SP7
2.12-150700.17.4
fixed
suse enterprise sap 15 SP6
2.12-150600.8.18.2
fixed
suse enterprise sap 15 SP7
2.12-150700.17.4
fixed
suse enterprise server 12 SP3
2.02-150.1
fixed
suse enterprise server 12 SP5
2.02-181.2
fixed
suse enterprise server 15 SP3
2.04-150300.22.52.3
fixed
suse enterprise server 15 SP4
2.06-150400.11.55.2
fixed
suse enterprise server 15 SP5
2.06-150500.29.43.2
fixed
suse enterprise server 15 SP6
2.12-150600.8.18.2
fixed
suse enterprise server 15 SP7
2.12-150700.17.4
fixed
grub2-powerpc-ieee1275
suse enterprise desktop 15 SP6
2.12-150600.8.18.2
fixed
suse enterprise desktop 15 SP7
2.12-150700.17.4
fixed
suse enterprise sap 15 SP6
2.12-150600.8.18.2
fixed
suse enterprise sap 15 SP7
2.12-150700.17.4
fixed
suse enterprise server 12 SP5
2.02-181.2
fixed
suse enterprise server 15 SP3
2.04-150300.22.52.3
fixed
suse enterprise server 15 SP4
2.06-150400.11.55.2
fixed
suse enterprise server 15 SP5
2.06-150500.29.43.2
fixed
suse enterprise server 15 SP6
2.12-150600.8.18.2
fixed
suse enterprise server 15 SP7
2.12-150700.17.4
fixed
grub2-s390x-emu
suse enterprise desktop 15 SP6
2.12-150600.8.18.2
fixed
suse enterprise desktop 15 SP7
2.12-150700.17.4
fixed
suse enterprise sap 15 SP6
2.12-150600.8.18.2
fixed
suse enterprise sap 15 SP7
2.12-150700.17.4
fixed
suse enterprise server 12 SP5
2.02-181.2
fixed
suse enterprise server 15 SP3
2.04-150300.22.52.3
fixed
suse enterprise server 15 SP4
2.06-150400.11.55.2
fixed
suse enterprise server 15 SP5
2.06-150500.29.43.2
fixed
suse enterprise server 15 SP6
2.12-150600.8.18.2
fixed
suse enterprise server 15 SP7
2.12-150700.17.4
fixed
grub2-snapper-plugin
suse enterprise desktop 15 SP6
2.12-150600.8.18.2
fixed
suse enterprise desktop 15 SP7
2.12-150700.17.4
fixed
suse enterprise sap 15 SP6
2.12-150600.8.18.2
fixed
suse enterprise sap 15 SP7
2.12-150700.17.4
fixed
suse enterprise server 12 SP3
2.02-150.1
fixed
suse enterprise server 12 SP5
2.02-181.2
fixed
suse enterprise server 15 SP3
2.04-150300.22.52.3
fixed
suse enterprise server 15 SP4
2.06-150400.11.55.2
fixed
suse enterprise server 15 SP5
2.06-150500.29.43.2
fixed
suse enterprise server 15 SP6
2.12-150600.8.18.2
fixed
suse enterprise server 15 SP7
2.12-150700.17.4
fixed
grub2-systemd-sleep-plugin
suse enterprise desktop 15 SP6
2.12-150600.8.18.2
fixed
suse enterprise desktop 15 SP7
2.12-150700.17.4
fixed
suse enterprise sap 15 SP6
2.12-150600.8.18.2
fixed
suse enterprise sap 15 SP7
2.12-150700.17.4
fixed
suse enterprise server 12 SP3
2.02-150.1
fixed
suse enterprise server 12 SP5
2.02-181.2
fixed
suse enterprise server 15 SP3
2.04-150300.22.52.3
fixed
suse enterprise server 15 SP4
2.06-150400.11.55.2
fixed
suse enterprise server 15 SP5
2.06-150500.29.43.2
fixed
suse enterprise server 15 SP6
2.12-150600.8.18.2
fixed
suse enterprise server 15 SP7
2.12-150700.17.4
fixed
grub2-x86_64-efi
suse enterprise desktop 15 SP6
2.12-150600.8.18.2
fixed
suse enterprise desktop 15 SP7
2.12-150700.17.4
fixed
suse enterprise sap 15 SP6
2.12-150600.8.18.2
fixed
suse enterprise sap 15 SP7
2.12-150700.17.4
fixed
suse enterprise server 12 SP3
2.02-150.1
fixed
suse enterprise server 12 SP5
2.02-181.2
fixed
suse enterprise server 15 SP3
2.04-150300.22.52.3
fixed
suse enterprise server 15 SP4
2.06-150400.11.55.2
fixed
suse enterprise server 15 SP5
2.06-150500.29.43.2
fixed
suse enterprise server 15 SP6
2.12-150600.8.18.2
fixed
suse enterprise server 15 SP7
2.12-150700.17.4
fixed
grub2-x86_64-xen
suse enterprise server 12 SP3
2.02-150.1
fixed
suse enterprise server 12 SP5
2.02-181.2
fixed
suse enterprise server 15 SP3
2.04-150300.22.52.3
fixed
suse enterprise server 15 SP4
2.06-150400.11.55.2
fixed
suse enterprise server 15 SP5
2.06-150500.29.43.2
fixed
Red Hat logo
Red Hat Enterprise Linux Releases
Red Hat Product
Release
grub2-common
RHEL 8
1:2.02-162.el8_10
fixed
RHEL 8.2 AUS
1:2.02-87.el8_2.13
fixed
RHEL 8.4 AUS
1:2.02-99.el8_4.12
fixed
RHEL 8.4 E4S
1:2.02-99.el8_4.12
fixed
RHEL 8.4 TUS
1:2.02-99.el8_4.12
fixed
RHEL 8.6 AUS
1:2.02-123.el8_6.18
fixed
RHEL 8.6 E4S
1:2.02-123.el8_6.18
fixed
RHEL 8.6 TUS
1:2.02-123.el8_6.18
fixed
RHEL 8.8 AUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 E4S
1:2.02-152.el8_8.2
fixed
RHEL 8.8 EUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 TUS
1:2.02-152.el8_8.2
fixed
RHEL 9
1:2.06-94.el9_5
fixed
grub2-efi-aa64
RHEL 8
1:2.02-162.el8_10
fixed
RHEL 8.6 E4S
1:2.02-123.el8_6.18
fixed
RHEL 8.8 AUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 E4S
1:2.02-152.el8_8.2
fixed
RHEL 8.8 EUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 TUS
1:2.02-152.el8_8.2
fixed
RHEL 9
1:2.06-94.el9_5
fixed
grub2-efi-aa64-cdboot
RHEL 8
1:2.02-162.el8_10
fixed
RHEL 8.6 E4S
1:2.02-123.el8_6.18
fixed
RHEL 8.8 AUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 E4S
1:2.02-152.el8_8.2
fixed
RHEL 8.8 EUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 TUS
1:2.02-152.el8_8.2
fixed
RHEL 9
1:2.06-94.el9_5
fixed
grub2-efi-aa64-modules
RHEL 8
1:2.02-162.el8_10
fixed
RHEL 8.2 AUS
1:2.02-87.el8_2.13
fixed
RHEL 8.4 AUS
1:2.02-99.el8_4.12
fixed
RHEL 8.4 E4S
1:2.02-99.el8_4.12
fixed
RHEL 8.4 TUS
1:2.02-99.el8_4.12
fixed
RHEL 8.6 AUS
1:2.02-123.el8_6.18
fixed
RHEL 8.6 E4S
1:2.02-123.el8_6.18
fixed
RHEL 8.6 TUS
1:2.02-123.el8_6.18
fixed
RHEL 8.8 AUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 E4S
1:2.02-152.el8_8.2
fixed
RHEL 8.8 EUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 TUS
1:2.02-152.el8_8.2
fixed
RHEL 9
1:2.06-94.el9_5
fixed
grub2-efi-ia32
RHEL 8
1:2.02-162.el8_10
fixed
RHEL 8.2 AUS
1:2.02-87.el8_2.13
fixed
RHEL 8.4 AUS
1:2.02-99.el8_4.12
fixed
RHEL 8.4 E4S
1:2.02-99.el8_4.12
fixed
RHEL 8.4 TUS
1:2.02-99.el8_4.12
fixed
RHEL 8.6 AUS
1:2.02-123.el8_6.18
fixed
RHEL 8.6 E4S
1:2.02-123.el8_6.18
fixed
RHEL 8.6 TUS
1:2.02-123.el8_6.18
fixed
RHEL 8.8 AUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 E4S
1:2.02-152.el8_8.2
fixed
RHEL 8.8 EUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 TUS
1:2.02-152.el8_8.2
fixed
grub2-efi-ia32-cdboot
RHEL 8
1:2.02-162.el8_10
fixed
RHEL 8.2 AUS
1:2.02-87.el8_2.13
fixed
RHEL 8.4 AUS
1:2.02-99.el8_4.12
fixed
RHEL 8.4 E4S
1:2.02-99.el8_4.12
fixed
RHEL 8.4 TUS
1:2.02-99.el8_4.12
fixed
RHEL 8.6 AUS
1:2.02-123.el8_6.18
fixed
RHEL 8.6 E4S
1:2.02-123.el8_6.18
fixed
RHEL 8.6 TUS
1:2.02-123.el8_6.18
fixed
RHEL 8.8 AUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 E4S
1:2.02-152.el8_8.2
fixed
RHEL 8.8 EUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 TUS
1:2.02-152.el8_8.2
fixed
grub2-efi-ia32-modules
RHEL 8
1:2.02-162.el8_10
fixed
RHEL 8.2 AUS
1:2.02-87.el8_2.13
fixed
RHEL 8.4 AUS
1:2.02-99.el8_4.12
fixed
RHEL 8.4 E4S
1:2.02-99.el8_4.12
fixed
RHEL 8.4 TUS
1:2.02-99.el8_4.12
fixed
RHEL 8.6 AUS
1:2.02-123.el8_6.18
fixed
RHEL 8.6 E4S
1:2.02-123.el8_6.18
fixed
RHEL 8.6 TUS
1:2.02-123.el8_6.18
fixed
RHEL 8.8 AUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 E4S
1:2.02-152.el8_8.2
fixed
RHEL 8.8 EUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 TUS
1:2.02-152.el8_8.2
fixed
grub2-efi-x64
RHEL 8
1:2.02-162.el8_10
fixed
RHEL 8.2 AUS
1:2.02-87.el8_2.13
fixed
RHEL 8.4 AUS
1:2.02-99.el8_4.12
fixed
RHEL 8.4 E4S
1:2.02-99.el8_4.12
fixed
RHEL 8.4 TUS
1:2.02-99.el8_4.12
fixed
RHEL 8.6 AUS
1:2.02-123.el8_6.18
fixed
RHEL 8.6 E4S
1:2.02-123.el8_6.18
fixed
RHEL 8.6 TUS
1:2.02-123.el8_6.18
fixed
RHEL 8.8 AUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 E4S
1:2.02-152.el8_8.2
fixed
RHEL 8.8 EUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 TUS
1:2.02-152.el8_8.2
fixed
RHEL 9
1:2.06-94.el9_5
fixed
grub2-efi-x64-cdboot
RHEL 8
1:2.02-162.el8_10
fixed
RHEL 8.2 AUS
1:2.02-87.el8_2.13
fixed
RHEL 8.4 AUS
1:2.02-99.el8_4.12
fixed
RHEL 8.4 E4S
1:2.02-99.el8_4.12
fixed
RHEL 8.4 TUS
1:2.02-99.el8_4.12
fixed
RHEL 8.6 AUS
1:2.02-123.el8_6.18
fixed
RHEL 8.6 E4S
1:2.02-123.el8_6.18
fixed
RHEL 8.6 TUS
1:2.02-123.el8_6.18
fixed
RHEL 8.8 AUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 E4S
1:2.02-152.el8_8.2
fixed
RHEL 8.8 EUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 TUS
1:2.02-152.el8_8.2
fixed
RHEL 9
1:2.06-94.el9_5
fixed
grub2-efi-x64-modules
RHEL 8
1:2.02-162.el8_10
fixed
RHEL 8.2 AUS
1:2.02-87.el8_2.13
fixed
RHEL 8.4 AUS
1:2.02-99.el8_4.12
fixed
RHEL 8.4 E4S
1:2.02-99.el8_4.12
fixed
RHEL 8.4 TUS
1:2.02-99.el8_4.12
fixed
RHEL 8.6 AUS
1:2.02-123.el8_6.18
fixed
RHEL 8.6 E4S
1:2.02-123.el8_6.18
fixed
RHEL 8.6 TUS
1:2.02-123.el8_6.18
fixed
RHEL 8.8 AUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 E4S
1:2.02-152.el8_8.2
fixed
RHEL 8.8 EUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 TUS
1:2.02-152.el8_8.2
fixed
RHEL 9
1:2.06-94.el9_5
fixed
grub2-pc
RHEL 8
1:2.02-162.el8_10
fixed
RHEL 8.2 AUS
1:2.02-87.el8_2.13
fixed
RHEL 8.4 AUS
1:2.02-99.el8_4.12
fixed
RHEL 8.4 E4S
1:2.02-99.el8_4.12
fixed
RHEL 8.4 TUS
1:2.02-99.el8_4.12
fixed
RHEL 8.6 AUS
1:2.02-123.el8_6.18
fixed
RHEL 8.6 E4S
1:2.02-123.el8_6.18
fixed
RHEL 8.6 TUS
1:2.02-123.el8_6.18
fixed
RHEL 8.8 AUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 E4S
1:2.02-152.el8_8.2
fixed
RHEL 8.8 EUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 TUS
1:2.02-152.el8_8.2
fixed
RHEL 9
1:2.06-94.el9_5
fixed
grub2-pc-modules
RHEL 8
1:2.02-162.el8_10
fixed
RHEL 8.2 AUS
1:2.02-87.el8_2.13
fixed
RHEL 8.4 AUS
1:2.02-99.el8_4.12
fixed
RHEL 8.4 E4S
1:2.02-99.el8_4.12
fixed
RHEL 8.4 TUS
1:2.02-99.el8_4.12
fixed
RHEL 8.6 AUS
1:2.02-123.el8_6.18
fixed
RHEL 8.6 E4S
1:2.02-123.el8_6.18
fixed
RHEL 8.6 TUS
1:2.02-123.el8_6.18
fixed
RHEL 8.8 AUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 E4S
1:2.02-152.el8_8.2
fixed
RHEL 8.8 EUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 TUS
1:2.02-152.el8_8.2
fixed
RHEL 9
1:2.06-94.el9_5
fixed
grub2-ppc64le
RHEL 8
1:2.02-162.el8_10
fixed
RHEL 8.4 E4S
1:2.02-99.el8_4.12
fixed
RHEL 8.6 E4S
1:2.02-123.el8_6.18
fixed
RHEL 8.8 AUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 E4S
1:2.02-152.el8_8.2
fixed
RHEL 8.8 EUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 TUS
1:2.02-152.el8_8.2
fixed
RHEL 9
1:2.06-94.el9_5
fixed
grub2-ppc64le-modules
RHEL 8
1:2.02-162.el8_10
fixed
RHEL 8.2 AUS
1:2.02-87.el8_2.13
fixed
RHEL 8.4 AUS
1:2.02-99.el8_4.12
fixed
RHEL 8.4 E4S
1:2.02-99.el8_4.12
fixed
RHEL 8.4 TUS
1:2.02-99.el8_4.12
fixed
RHEL 8.6 AUS
1:2.02-123.el8_6.18
fixed
RHEL 8.6 E4S
1:2.02-123.el8_6.18
fixed
RHEL 8.6 TUS
1:2.02-123.el8_6.18
fixed
RHEL 8.8 AUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 E4S
1:2.02-152.el8_8.2
fixed
RHEL 8.8 EUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 TUS
1:2.02-152.el8_8.2
fixed
RHEL 9
1:2.06-94.el9_5
fixed
grub2-tools
RHEL 8
1:2.02-162.el8_10
fixed
RHEL 8.2 AUS
1:2.02-87.el8_2.13
fixed
RHEL 8.4 AUS
1:2.02-99.el8_4.12
fixed
RHEL 8.4 E4S
1:2.02-99.el8_4.12
fixed
RHEL 8.4 TUS
1:2.02-99.el8_4.12
fixed
RHEL 8.6 AUS
1:2.02-123.el8_6.18
fixed
RHEL 8.6 E4S
1:2.02-123.el8_6.18
fixed
RHEL 8.6 TUS
1:2.02-123.el8_6.18
fixed
RHEL 8.8 AUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 E4S
1:2.02-152.el8_8.2
fixed
RHEL 8.8 EUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 TUS
1:2.02-152.el8_8.2
fixed
RHEL 9
1:2.06-94.el9_5
fixed
grub2-tools-efi
RHEL 8
1:2.02-162.el8_10
fixed
RHEL 8.2 AUS
1:2.02-87.el8_2.13
fixed
RHEL 8.4 AUS
1:2.02-99.el8_4.12
fixed
RHEL 8.4 E4S
1:2.02-99.el8_4.12
fixed
RHEL 8.4 TUS
1:2.02-99.el8_4.12
fixed
RHEL 8.6 AUS
1:2.02-123.el8_6.18
fixed
RHEL 8.6 E4S
1:2.02-123.el8_6.18
fixed
RHEL 8.6 TUS
1:2.02-123.el8_6.18
fixed
RHEL 8.8 AUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 E4S
1:2.02-152.el8_8.2
fixed
RHEL 8.8 EUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 TUS
1:2.02-152.el8_8.2
fixed
RHEL 9
1:2.06-94.el9_5
fixed
grub2-tools-extra
RHEL 8
1:2.02-162.el8_10
fixed
RHEL 8.2 AUS
1:2.02-87.el8_2.13
fixed
RHEL 8.4 AUS
1:2.02-99.el8_4.12
fixed
RHEL 8.4 E4S
1:2.02-99.el8_4.12
fixed
RHEL 8.4 TUS
1:2.02-99.el8_4.12
fixed
RHEL 8.6 AUS
1:2.02-123.el8_6.18
fixed
RHEL 8.6 E4S
1:2.02-123.el8_6.18
fixed
RHEL 8.6 TUS
1:2.02-123.el8_6.18
fixed
RHEL 8.8 AUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 E4S
1:2.02-152.el8_8.2
fixed
RHEL 8.8 EUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 TUS
1:2.02-152.el8_8.2
fixed
RHEL 9
1:2.06-94.el9_5
fixed
grub2-tools-minimal
RHEL 8
1:2.02-162.el8_10
fixed
RHEL 8.2 AUS
1:2.02-87.el8_2.13
fixed
RHEL 8.4 AUS
1:2.02-99.el8_4.12
fixed
RHEL 8.4 E4S
1:2.02-99.el8_4.12
fixed
RHEL 8.4 TUS
1:2.02-99.el8_4.12
fixed
RHEL 8.6 AUS
1:2.02-123.el8_6.18
fixed
RHEL 8.6 E4S
1:2.02-123.el8_6.18
fixed
RHEL 8.6 TUS
1:2.02-123.el8_6.18
fixed
RHEL 8.8 AUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 E4S
1:2.02-152.el8_8.2
fixed
RHEL 8.8 EUS
1:2.02-152.el8_8.2
fixed
RHEL 8.8 TUS
1:2.02-152.el8_8.2
fixed
RHEL 9
1:2.06-94.el9_5
fixed