[CLSA-2025:1744724536] grub2: Fix of 5 CVEs
Type:
security
Severity:
Important
Release date:
2025-04-15 13:42:21 UTC
Description:
- CVE-2025-0624: net: Out-of-bounds write in grub_net_search_configfile() - CVE-2025-0690: read: Integer overflow may lead to out-of-bounds write - CVE-2025-1118: commands/dump: The dump command is not in lockdown when secure boot is enabled - CVE-2025-0678: squash4: Integer overflow may lead to heap based out-of-bounds write when reading data - CVE-2025-1125: fs/hfs: Integer overflow may lead to heap based out-of-bounds write
Updated packages:
  • grub2-2.02-0.87.0.2.el7.centos.14.tuxcare.els6.x86_64.rpm
    sha:d5b2454d89c894f7728227ae72399632b48e72905f239034283f4cc5e87f6250
  • grub2-common-2.02-0.87.0.2.el7.centos.14.tuxcare.els6.noarch.rpm
    sha:e8660fc02747ba305700b3ecc58df1e1cc7202f836e39679b54411ed06c25426
  • grub2-efi-ia32-2.02-0.87.0.2.el7.centos.14.tuxcare.els6.x86_64.rpm
    sha:5c729bb4a5679ea349b73c12a7eceaeee1aa107ee330928c12501ef00a66b962
  • grub2-efi-ia32-cdboot-2.02-0.87.0.2.el7.centos.14.tuxcare.els6.x86_64.rpm
    sha:2e085f568d9db8dee28478a5408f8be9461c05f16fe8f31a9f07775598a64953
  • grub2-efi-ia32-modules-2.02-0.87.0.2.el7.centos.14.tuxcare.els6.noarch.rpm
    sha:72d9602ddc8a2ca5b6192473a25aac6a282f1ac3dce11f55a4ad37d2fb9be7ef
  • grub2-efi-x64-2.02-0.87.0.2.el7.centos.14.tuxcare.els6.x86_64.rpm
    sha:679856d7b8802e9d74176be20aec95130bd312f21d23261df50d901f300bd5e7
  • grub2-efi-x64-cdboot-2.02-0.87.0.2.el7.centos.14.tuxcare.els6.x86_64.rpm
    sha:257a28a7963ee69b969c8f407e533df5371712e1ba0f2d1f8092fd4101b4e51b
  • grub2-efi-x64-modules-2.02-0.87.0.2.el7.centos.14.tuxcare.els6.noarch.rpm
    sha:60aee0fe3c832396ea805d83abef626b5209370823404efcf8cd5dba9df32a6d
  • grub2-i386-modules-2.02-0.87.0.2.el7.centos.14.tuxcare.els6.noarch.rpm
    sha:09fbdfb24a5b5ac399d7bbccf6fa0ff774db699870d4090da3cc7adbd1040a57
  • grub2-pc-2.02-0.87.0.2.el7.centos.14.tuxcare.els6.x86_64.rpm
    sha:c7e6e8211fb541f2fc807fa3d0c0ac60e8caed283c16afeaa14a3a75084440c7
  • grub2-pc-modules-2.02-0.87.0.2.el7.centos.14.tuxcare.els6.noarch.rpm
    sha:bbd972e0ce809ff4657024d32dc7f2a86dc48a11eefb233184a320dc6827e230
  • grub2-tools-2.02-0.87.0.2.el7.centos.14.tuxcare.els6.x86_64.rpm
    sha:850c0f75e5afdee787ace6e241f37f4dcb5a7ca7ff0616a0cecb313cb20b464a
  • grub2-tools-extra-2.02-0.87.0.2.el7.centos.14.tuxcare.els6.x86_64.rpm
    sha:6549d428d213de14f2630faefd8ef4f57e9848b1307e19a9d2f6e1c6e2c5d4a4
  • grub2-tools-minimal-2.02-0.87.0.2.el7.centos.14.tuxcare.els6.x86_64.rpm
    sha:e4e2bd29af37c9f1e353b9edb81065570807ce8e763e7b1a041e065827f0367c
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.