MEDIUM · 5.7

CVE-2020-15707

Integer overflows were discovered in the functions grub_cmd_initrd and grub_initrd_init in the efilinux component of GRUB2, as shipped in Debian, Red Hat, and Ubuntu (the functionality is not included...

Vulnerability Description

Integer overflows were discovered in the functions grub_cmd_initrd and grub_initrd_init in the efilinux component of GRUB2, as shipped in Debian, Red Hat, and Ubuntu (the functionality is not included in GRUB2 upstream), leading to a heap-based buffer overflow. These could be triggered by an extremely large number of arguments to the initrd command on 32-bit architectures, or a crafted filesystem with very large files on any architecture. An attacker could use this to execute arbitrary code and bypass UEFI Secure Boot restrictions. This issue affects GRUB2 version 2.04 and prior versions.

CVSS Score

5.7

MEDIUM

CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:H/A:H
Attack Vector
LOCAL
Attack Complexity
HIGH
Privileges Required
HIGH
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
NONE
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
GnuGrub2<= 2.04
RedhatEnterprise Linux Atomic Host-
RedhatOpenshift Container Platform4.0
RedhatEnterprise Linux7.0
MicrosoftWindows 10-
MicrosoftWindows 8.1-
MicrosoftWindows Rt 8.1-
MicrosoftWindows Server 2012-
MicrosoftWindows Server 2016-
MicrosoftWindows Server 2019-
CanonicalUbuntu Linux14.04
DebianDebian Linux10.0
OpensuseLeap15.1
SuseSuse Linux Enterprise Server11
NetappActive Iq Unified Manager>= 9.5

Related Weaknesses (CWE)

References

FAQ

What is CVE-2020-15707?

CVE-2020-15707 is a vulnerability with a CVSS score of 5.7 (MEDIUM). Integer overflows were discovered in the functions grub_cmd_initrd and grub_initrd_init in the efilinux component of GRUB2, as shipped in Debian, Red Hat, and Ubuntu (the functionality is not included...

How severe is CVE-2020-15707?

CVE-2020-15707 has been rated MEDIUM with a CVSS base score of 5.7/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2020-15707?

Check the references section above for vendor advisories and patch information. Affected products include: Gnu Grub2, Redhat Enterprise Linux Atomic Host, Redhat Openshift Container Platform, Redhat Enterprise Linux, Microsoft Windows 10.