| ID |
CVE-2025-54771
|
| Sažetak |
A use-after-free vulnerability has been identified in the GNU GRUB (Grand Unified Bootloader). The flaw occurs because the file-closing process incorrectly retains a memory pointer, leaving an invalid reference to a file system structure. An attacker could exploit this vulnerability to cause grub to crash, leading to a Denial of Service. Possible data integrity or confidentiality compromise is not discarded. |
| Reference |
|
| CVSS |
| Base: | 4.9 |
| Impact: | 3.4 |
| Exploitability: | 1.4 |
|
| Pristup |
| Vektor | Složenost | Autentikacija |
| LOCAL |
HIGH |
NONE |
|
| Impact |
| Povjerljivost | Cjelovitost | Dostupnost |
| LOW |
LOW |
LOW |
|
| CVSS vektor |
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L |
| Zadnje važnije ažuriranje |
21-08-2026 - 13:16 |
| Objavljeno |
18-11-2025 - 19:15 |