CVE-2021-3695

high
Published 2022-06-16 Β· Modified 2022-08-23
CVSS v3
β€”
CVSS v4 NEW
β€”
not yet in upstream
VIR risk
8.0

Description

Important: grub2, mokutil, shim, and shim-unsigned-x64 security update

Predictions

Exploit likelihood
20%
Patch ETA
β€”

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

Mitigation details

Source: Red Hat Errata β€” Red Hat Inc. Β· View original β†— Β· Open-Errata-API

Description grub2: Crafted PNG grayscale images may lead to out-of-bounds write in heap Red Hat statement Due to the nature of the input and how it's processed, a successful attack is considered very complex to be executed, as the same value is written out of bounds three times in a row. CVSS v3: 7.5 (CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H) Errata / fixed releases…

Description

grub2: Crafted PNG grayscale images may lead to out-of-bounds write in heap

Red Hat statement

Due to the nature of the input and how it's processed, a successful attack is considered very complex to be executed, as the same value is written out of bounds three times in a row.

CVSS v3: 7.5 (CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H)

Errata / fixed releases

ProductPackageAdvisoryReleased
Red Hat Enterprise Linux 8grub2-1:2.02-123.el8_6.8RHSA-2022:50952022-06-16T00:00:00Z
Red Hat Enterprise Linux 8.1 Update Services for SAP Solutionsgrub2-1:2.02-87.el8_1.10RHSA-2022:50982022-06-16T00:00:00Z
Red Hat Enterprise Linux 8.2 Extended Update Supportgrub2-1:2.02-87.el8_2.10RHSA-2022:51002022-06-16T00:00:00Z
Red Hat Enterprise Linux 8.4 Extended Update Supportgrub2-1:2.02-99.el8_4.9RHSA-2022:50962022-06-16T00:00:00Z
Red Hat Enterprise Linux 9grub2-1:2.06-27.el9_0.7RHSA-2022:50992022-06-16T00:00:00Z

Package state

ProductPackageState
Red Hat Enterprise Linux 7grub2Out of support scope

Apply commands

bash fix
Apply RHSA-2022:5095 for Red Hat Enterprise Linux 8
yum update -y grub2
# or:
dnf upgrade -y grub2

OS impact

arch Arch Affected 1 release
VersionStatusFixed in
β€” Affected β€”
suse SUSE Affected 1 release
VersionStatusFixed in
β€” Affected β€”
almalinux AlmaLinux Fixed 1 release
VersionStatusFixed in
9 Fixed grub2-tools-minimal-2.06-27.el9_0.7.alma.ppc64le.rpm
debian Debian Fixed 5 releases
VersionStatusFixed in
trixie Fixed 2.06-3
sid Fixed 2.06-3
forky Fixed 2.06-3
bullseye Fixed 2.06-3~deb11u1
bookworm Fixed 2.06-3
redhat Red Hat Fixed 2 releases
VersionStatusFixed in
9 Fixed β€”
8 Fixed β€”
rockylinux Rocky Linux Fixed 2 releases
VersionStatusFixed in
9 Fixed β€”
8 Fixed β€”

References

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.