Security Advisory

CVE-2024-45777

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-02-19 17:54:01
Last updated 2026-06-29 22:53:53
Assigner redhat
State PUBLISHED

Description

A flaw was found in grub2. The calculation of the translation buffer when reading a language .mo file in grub_gettext_getstr_from_position() may overflow, leading to a Out-of-bound write. This issue can be leveraged by an attacker to overwrite grub2s sensitive heap data, eventually leading to the circumvention of secure boot protections.