VendorsGNUgruball versions
Vulnerabilities

GNU Grub

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2023-4949
Memory Corruption Vulnerability in Grub-Legacy's XFS Implementation
Published 2023-11-10 · Modified
8.1EPSS 0.002
CVE-2013-4577
A certain Debian patch for GNU GRUB uses world-readable permissions for grub.cfg, which allows local users to obtain password hashes, as demonstrated by reading the password_pbkdf2 directive in the file.
Published 2014-05-12 · Modified
2.1EPSS 0.004