grub2 vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the grub2 package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • M
Expired Pointer Dereference

*
  • M
Expired Pointer Dereference

*
  • M
Expired Pointer Dereference

*
  • M
Expired Pointer Dereference

*
  • M
Incorrect Calculation of Buffer Size

*
  • M
CVE-2025-61662

*
  • M
Trust Boundary Violation

<2.12-6
  • M
Buffer Overflow

<2.12-6
  • L
Information Exposure

*
  • H
Out-of-bounds Write

<2.12-6
  • M
Out-of-bounds Write

<2.12-6
  • H
Out-of-bounds Write

<2.04-16
  • M
Out-of-bounds Read

<2.12~rc1-11
  • M
Out-of-bounds Write

<2.12-6
  • M
Integer Overflow or Wraparound

<2.04-9
  • M
Race Condition

<2.04-9
  • M
Missing Authentication for Critical Function

*
  • L
CVE-2024-56737

<2.12-6
  • M
Out-of-bounds Write

<2.12-6
  • H
Integer Underflow

<2.06-3
  • M
Improper Update of Reference Count

<2.12-6
  • M
Out-of-bounds Write

<2.12-6
  • H
Out-of-bounds Write

<2.04-16
  • M
Out-of-bounds Write

<2.12-6
  • H
Out-of-bounds Write

<2.12-6
  • H
Out-of-bounds Write

<2.12~rc1-11
  • H
Out-of-bounds Write

<2.06-3
  • M
Integer Overflow or Wraparound

<2.04-9
  • H
Use After Free

<2.06-3
  • M
Unchecked Return Value

<2.12-6
  • L
Access Restriction Bypass

<2.00-20
  • H
Access Restriction Bypass

<2.02~beta2-33
  • H
Incomplete Blacklist

<2.04-16
  • H
Integer Overflow or Wraparound

<2.12-6
  • M
Out-of-bounds Write

<2.06-3
  • M
Use After Free

<2.12-6
  • M
Race Condition

<2.04-9
  • M
Out-of-bounds Write

<2.12-6
  • M
Stack-based Buffer Overflow

<2.04-16
  • M
Out-of-bounds Write

<2.04-16
  • H
Heap-based Buffer Overflow

<2.06-5
  • M
Out-of-bounds Write

<2.12-6
  • M
Out-of-bounds Write

<2.12-6
  • M
Integer Overflow or Wraparound

<2.04-9
  • H
Use After Free

<2.04-16
  • M
Out-of-bounds Write

<2.12-6
  • H
Out-of-bounds Write

<2.06-5
  • M
Out-of-bounds Write

<2.12-6
  • L
CVE-2024-2312

<2.12-2
  • H
CVE-2022-28735

<2.06-3
  • H
Improper Authentication

<1.97+20091115-1
  • M
Integer Overflow or Wraparound

<2.12-6
  • H
Out-of-bounds Write

<2.06-3
  • M
Out-of-bounds Write

<2.12-6
  • L
Incorrect Default Permissions

<2.06-8
  • H
Improper Authorization

<2.04-16
  • M
Out-of-bounds Write

<2.06-3
  • M
Integer Overflow or Wraparound

<2.04-9
  • L
Out-of-Bounds

<2.02~beta2-8
  • M
Integer Overflow or Wraparound

<2.12-6
  • H
Buffer Overflow

<2.04-9