A flaw was found in grub2. During the network boot process, when trying to search for the configuration file, grub copies data from a user controlled environment variable into an internal buffer using the grub_strcpy() function. During this step, it fails to consider the environment variable length when allocating the internal buffer, resulting in an out-of-bounds write. If correctly exploited, this issue may result in remote code execution through the same network segment grub is searching for the boot information, which can be used to by-pass secure boot protections.
{
"binaries": [
{
"binary_version": "2.04-1ubuntu44.1.2",
"binary_name": "grub-efi-amd64"
},
{
"binary_version": "2.04-1ubuntu44.1.2",
"binary_name": "grub-efi-amd64-bin"
},
{
"binary_version": "2.04-1ubuntu44.1.2",
"binary_name": "grub-efi-arm64"
},
{
"binary_version": "2.04-1ubuntu44.1.2",
"binary_name": "grub-efi-arm64-bin"
}
]
}{
"binaries": [
{
"binary_version": "2.06-2ubuntu14.1",
"binary_name": "grub-efi-amd64"
},
{
"binary_version": "2.06-2ubuntu14.1",
"binary_name": "grub-efi-amd64-bin"
},
{
"binary_version": "2.06-2ubuntu14.1",
"binary_name": "grub-efi-arm64"
},
{
"binary_version": "2.06-2ubuntu14.1",
"binary_name": "grub-efi-arm64-bin"
}
]
}{
"binaries": [
{
"binary_version": "2.06-2ubuntu14.8",
"binary_name": "grub-efi-amd64"
},
{
"binary_version": "2.06-2ubuntu14.8",
"binary_name": "grub-efi-amd64-bin"
},
{
"binary_version": "2.06-2ubuntu14.8",
"binary_name": "grub-efi-arm64"
},
{
"binary_version": "2.06-2ubuntu14.8",
"binary_name": "grub-efi-arm64-bin"
}
]
}{
"binaries": [
{
"binary_version": "2.06-2ubuntu14.8",
"binary_name": "grub-efi-amd64"
},
{
"binary_version": "2.06-2ubuntu14.8",
"binary_name": "grub-efi-amd64-bin"
},
{
"binary_version": "2.06-2ubuntu14.8",
"binary_name": "grub-efi-arm64"
},
{
"binary_version": "2.06-2ubuntu14.8",
"binary_name": "grub-efi-arm64-bin"
}
]
}{
"binaries": [
{
"binary_version": "2.12-1ubuntu7.3",
"binary_name": "grub-efi-amd64"
},
{
"binary_version": "2.12-1ubuntu7.3",
"binary_name": "grub-efi-amd64-bin"
},
{
"binary_version": "2.12-1ubuntu7.3",
"binary_name": "grub-efi-arm64"
},
{
"binary_version": "2.12-1ubuntu7.3",
"binary_name": "grub-efi-arm64-bin"
}
]
}{
"binaries": [
{
"binary_version": "2.12-5ubuntu11",
"binary_name": "grub-efi-amd64"
},
{
"binary_version": "2.12-5ubuntu11",
"binary_name": "grub-efi-amd64-bin"
},
{
"binary_version": "2.12-5ubuntu11",
"binary_name": "grub-efi-amd64-unsigned"
},
{
"binary_version": "2.12-5ubuntu11",
"binary_name": "grub-efi-arm64"
},
{
"binary_version": "2.12-5ubuntu11",
"binary_name": "grub-efi-arm64-bin"
},
{
"binary_version": "2.12-5ubuntu11",
"binary_name": "grub-efi-arm64-unsigned"
}
]
}{
"binaries": [
{
"binary_version": "2.14~git20250718.0e36779-1ubuntu4",
"binary_name": "grub-efi-amd64"
},
{
"binary_version": "2.14~git20250718.0e36779-1ubuntu4",
"binary_name": "grub-efi-amd64-bin"
},
{
"binary_version": "2.14~git20250718.0e36779-1ubuntu4",
"binary_name": "grub-efi-amd64-unsigned"
},
{
"binary_version": "2.14~git20250718.0e36779-1ubuntu4",
"binary_name": "grub-efi-arm64"
},
{
"binary_version": "2.14~git20250718.0e36779-1ubuntu4",
"binary_name": "grub-efi-arm64-bin"
},
{
"binary_version": "2.14~git20250718.0e36779-1ubuntu4",
"binary_name": "grub-efi-arm64-unsigned"
}
]
}{
"binaries": [
{
"binary_version": "2.02~beta2-9ubuntu1.21",
"binary_name": "grub-common"
},
{
"binary_version": "2.02~beta2-9ubuntu1.21",
"binary_name": "grub-coreboot"
},
{
"binary_version": "2.02~beta2-9ubuntu1.21",
"binary_name": "grub-coreboot-bin"
},
{
"binary_version": "2.02~beta2-9ubuntu1.21",
"binary_name": "grub-efi"
},
{
"binary_version": "2.02~beta2-9ubuntu1.21",
"binary_name": "grub-efi-amd64"
},
{
"binary_version": "2.02~beta2-9ubuntu1.21",
"binary_name": "grub-efi-amd64-bin"
},
{
"binary_version": "2.02~beta2-9ubuntu1.21",
"binary_name": "grub-efi-arm"
},
{
"binary_version": "2.02~beta2-9ubuntu1.21",
"binary_name": "grub-efi-arm-bin"
},
{
"binary_version": "2.02~beta2-9ubuntu1.21",
"binary_name": "grub-efi-arm64"
},
{
"binary_version": "2.02~beta2-9ubuntu1.21",
"binary_name": "grub-efi-arm64-bin"
},
{
"binary_version": "2.02~beta2-9ubuntu1.21",
"binary_name": "grub-efi-ia32"
},
{
"binary_version": "2.02~beta2-9ubuntu1.21",
"binary_name": "grub-efi-ia32-bin"
},
{
"binary_version": "2.02~beta2-9ubuntu1.21",
"binary_name": "grub-emu"
},
{
"binary_version": "2.02~beta2-9ubuntu1.21",
"binary_name": "grub-firmware-qemu"
},
{
"binary_version": "2.02~beta2-9ubuntu1.21",
"binary_name": "grub-ieee1275"
},
{
"binary_version": "2.02~beta2-9ubuntu1.21",
"binary_name": "grub-ieee1275-bin"
},
{
"binary_version": "2.02~beta2-9ubuntu1.21",
"binary_name": "grub-linuxbios"
},
{
"binary_version": "2.02~beta2-9ubuntu1.21",
"binary_name": "grub-pc"
},
{
"binary_version": "2.02~beta2-9ubuntu1.21",
"binary_name": "grub-pc-bin"
},
{
"binary_version": "2.02~beta2-9ubuntu1.21",
"binary_name": "grub-rescue-pc"
},
{
"binary_version": "2.02~beta2-9ubuntu1.21",
"binary_name": "grub-theme-starfield"
},
{
"binary_version": "2.02~beta2-9ubuntu1.21",
"binary_name": "grub-uboot"
},
{
"binary_version": "2.02~beta2-9ubuntu1.21",
"binary_name": "grub-uboot-bin"
},
{
"binary_version": "2.02~beta2-9ubuntu1.21",
"binary_name": "grub-xen"
},
{
"binary_version": "2.02~beta2-9ubuntu1.21",
"binary_name": "grub-xen-bin"
},
{
"binary_version": "2.02~beta2-9ubuntu1.21",
"binary_name": "grub2"
},
{
"binary_version": "2.02~beta2-9ubuntu1.21",
"binary_name": "grub2-common"
}
]
}