Jesse Michael and Mickey Shkatov discovered that the configuration parser in GRUB2 did not properly exit when errors were discovered, resulting in heap-based buffer overflows. A local attacker could use this to execute arbitrary code and bypass UEFI Secure Boot restrictions. (CVE-2020-10713)
Chris Coulson discovered that the GRUB2 function handling code did not properly handle a function being redefined, leading to a use-after-free vulnerability. A local attacker could use this to execute arbitrary code and bypass UEFI Secure Boot restrictions. (CVE-2020-15706)
Chris Coulson discovered that multiple integer overflows existed in GRUB2 when handling certain filesystems or font files, leading to heap-based buffer overflows. A local attacker could use these to execute arbitrary code and bypass UEFI Secure Boot restrictions. (CVE-2020-14309, CVE-2020-14310, CVE-2020-14311)
It was discovered that the memory allocator for GRUB2 did not validate allocation size, resulting in multiple integer overflows and heap-based buffer overflows when handling certain filesystems, PNG images or disk metadata. A local attacker could use this to execute arbitrary code and bypass UEFI Secure Boot restrictions. (CVE-2020-14308)
Mathieu Trudel-Lapierre discovered that in certain situations, GRUB2 failed to validate kernel signatures. A local attacker could use this to bypass Secure Boot restrictions. (CVE-2020-15705)
Colin Watson and Chris Coulson discovered that an integer overflow existed in GRUB2 when handling the initrd command, leading to a heap-based buffer overflow. A local attacker could use this to execute arbitrary code and bypass UEFI Secure Boot restrictions. (CVE-2020-15707)
{ "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro", "binaries": [ { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-common" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-common-dbgsym" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-coreboot" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-coreboot-bin" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-coreboot-dbg" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-efi" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-efi-amd64" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-efi-amd64-bin" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-efi-amd64-dbg" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-efi-arm" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-efi-arm-bin" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-efi-arm-dbg" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-efi-arm64" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-efi-arm64-bin" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-efi-arm64-dbg" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-efi-ia32" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-efi-ia32-bin" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-efi-ia32-dbg" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-emu" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-emu-dbg" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-emu-dbgsym" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-firmware-qemu" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-ieee1275" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-ieee1275-bin" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-ieee1275-bin-dbgsym" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-ieee1275-dbg" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-linuxbios" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-mount-udeb" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-mount-udeb-dbgsym" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-pc" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-pc-bin" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-pc-bin-dbgsym" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-pc-dbg" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-rescue-pc" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-theme-starfield" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-uboot" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-uboot-bin" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-uboot-dbg" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-xen" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-xen-bin" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub-xen-dbg" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub2" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub2-common" }, { "binary_version": "2.02~beta2-9ubuntu1.20", "binary_name": "grub2-common-dbgsym" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-common" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-common-dbgsym" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-coreboot" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-coreboot-bin" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-coreboot-dbg" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-efi" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-efi-amd64" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-efi-amd64-bin" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-efi-amd64-dbg" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-efi-arm" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-efi-arm-bin" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-efi-arm-dbg" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-efi-arm64" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-efi-arm64-bin" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-efi-arm64-dbg" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-efi-ia32" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-efi-ia32-bin" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-efi-ia32-dbg" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-emu" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-emu-dbg" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-emu-dbgsym" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-firmware-qemu" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-ieee1275" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-ieee1275-bin" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-ieee1275-bin-dbgsym" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-ieee1275-dbg" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-linuxbios" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-mount-udeb" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-mount-udeb-dbgsym" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-pc" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-pc-bin" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-pc-bin-dbgsym" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-pc-dbg" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-rescue-pc" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-theme-starfield" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-uboot" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-uboot-bin" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-uboot-dbg" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-xen" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-xen-bin" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-xen-dbg" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub-xen-host" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub2" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub2-common" }, { "binary_version": "2.02~beta2-36ubuntu3.26", "binary_name": "grub2-common-dbgsym" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-common" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-common-dbgsym" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-coreboot" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-coreboot-bin" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-coreboot-dbg" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-efi" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-efi-amd64" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-efi-amd64-bin" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-efi-amd64-dbg" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-efi-arm" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-efi-arm-bin" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-efi-arm-dbg" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-efi-arm64" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-efi-arm64-bin" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-efi-arm64-dbg" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-efi-ia32" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-efi-ia32-bin" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-efi-ia32-dbg" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-emu" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-emu-dbg" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-firmware-qemu" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-ieee1275" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-ieee1275-bin" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-ieee1275-bin-dbgsym" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-ieee1275-dbg" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-linuxbios" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-mount-udeb" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-pc" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-pc-bin" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-pc-bin-dbgsym" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-pc-dbg" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-rescue-pc" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-theme-starfield" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-uboot" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-uboot-bin" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-uboot-dbg" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-xen" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-xen-bin" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-xen-dbg" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub-xen-host" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub2" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub2-common" }, { "binary_version": "2.02-2ubuntu8.16", "binary_name": "grub2-common-dbgsym" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-common" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-common-dbgsym" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-coreboot" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-coreboot-bin" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-coreboot-dbg" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-efi" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-efi-amd64" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-efi-amd64-bin" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-efi-amd64-dbg" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-efi-amd64-signed-template" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-efi-arm" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-efi-arm-bin" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-efi-arm-dbg" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-efi-arm64" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-efi-arm64-bin" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-efi-arm64-dbg" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-efi-arm64-signed-template" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-efi-ia32" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-efi-ia32-bin" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-efi-ia32-dbg" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-emu" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-emu-dbg" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-firmware-qemu" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-ieee1275" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-ieee1275-bin" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-ieee1275-bin-dbgsym" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-ieee1275-dbg" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-linuxbios" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-mount-udeb" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-pc" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-pc-bin" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-pc-bin-dbgsym" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-pc-dbg" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-rescue-pc" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-theme-starfield" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-uboot" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-uboot-bin" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-uboot-dbg" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-xen" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-xen-bin" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-xen-dbg" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub-xen-host" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub2" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub2-common" }, { "binary_version": "2.04-1ubuntu26.1", "binary_name": "grub2-common-dbgsym" } ] }