An integer overflow flaw was found in the BFS file system driver in grub2. When reading a file with an indirect extent map, grub2 fails to validate the number of extent entries to be read. A crafted or corrupted BFS filesystem may cause an integer overflow during the file reading, leading to a heap of bounds read. As a consequence, sensitive data may be leaked, or grub2 will crash.

Subscriptions

Vendors Products
Enterprise Linux Subscribe
Openshift Subscribe

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2025-5594 An integer overflow flaw was found in the BFS file system driver in grub2. When reading a file with an indirect extent map, grub2 fails to validate the number of extent entries to be read. A crafted or corrupted BFS filesystem may cause an integer overflow during the file reading, leading to a heap of bounds read. As a consequence, sensitive data may be leaked, or grub2 will crash.
Fixes

Solution

No solution given by the vendor.


Workaround

Do not run grub2 in an untrusted environment, specifically with a BFS file system image.

History

Sat, 05 Jul 2025 07:45:00 +0000

Type Values Removed Values Added
CPEs cpe:/o:redhat:enterprise_linux:10

Tue, 25 Mar 2025 05:15:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 4.1, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:H/A:N'}

cvssV3_1

{'score': 6, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:H'}


Sat, 22 Mar 2025 15:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-125

Fri, 21 Mar 2025 16:45:00 +0000

Type Values Removed Values Added
First Time appeared Gnu
Gnu grub2
CPEs cpe:2.3:a:gnu:grub2:*:*:*:*:*:*:*:*
Vendors & Products Gnu
Gnu grub2

Wed, 05 Mar 2025 21:00:00 +0000

Type Values Removed Values Added
References

Tue, 04 Mar 2025 03:45:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 03 Mar 2025 14:45:00 +0000

Type Values Removed Values Added
Title grub2: fs/bfs: Integer overflow leads to Heap OOB Read in the BFS parser Grub2: fs/bfs: integer overflow leads to heap oob read in the bfs parser
First Time appeared Redhat
Redhat enterprise Linux
Redhat openshift
CPEs cpe:/a:redhat:openshift:4
cpe:/o:redhat:enterprise_linux:7
cpe:/o:redhat:enterprise_linux:8
cpe:/o:redhat:enterprise_linux:9
Vendors & Products Redhat
Redhat enterprise Linux
Redhat openshift
References

Wed, 19 Feb 2025 14:00:00 +0000

Type Values Removed Values Added
Description An integer overflow flaw was found in the BFS file system driver in grub2. When reading a file with an indirect extent map, grub2 fails to validate the number of extent entries to be read. A crafted or corrupted BFS filesystem may cause an integer overflow during the file reading, leading to a heap of bounds read. As a consequence, sensitive data may be leaked, or grub2 will crash.
Title grub2: fs/bfs: Integer overflow leads to Heap OOB Read in the BFS parser
Weaknesses CWE-125
CWE-190
References
Metrics threat_severity

None

cvssV3_1

{'score': 4.1, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:H/A:N'}

threat_severity

Moderate


cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2025-11-14T01:33:24.684Z

Reserved: 2024-09-08T01:57:12.948Z

Link: CVE-2024-45779

cve-icon Vulnrichment

Updated: 2025-03-03T15:05:24.272Z

cve-icon NVD

Status : Modified

Published: 2025-03-03T15:15:14.660

Modified: 2025-03-25T05:15:39.697

Link: CVE-2024-45779

cve-icon Redhat

Severity : Moderate

Publid Date: 2025-02-18T18:00:00Z

Links: CVE-2024-45779 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses