CVE-2024-45777

Publication date

2025-02-19 17:54:01

Family

redhat

State

PUBLISHED

Description

A flaw was found in grub2. The calculation of the translation buffer when reading a language .mo file in grub_gettext_getstr_from_position() may overflow, leading to a Out-of-bound write. This issue can be leveraged by an attacker to overwrite grub2s sensitive heap data, eventually leading to the circumvention of secure boot protections.