Lucene search
Basic search
Lucene search
Search by product
Subscribe
K
Start 30-day trial
Database
Vendors
Products
Years
CVSS
Scanner
Agent Scanning
API Scanning
Manual Audit
Perimeter Scanner
Scanning
Projects
Email
Webhook
Plugins
Resources
Documents
Blog
Glossary
FAQ
Pricing
Contacts
About Us
Partners
Branding Guideline
SIGN IN
OracleLinux
ELSA-2022-5095
History
Jul 04, 2022 - 12:00 a.m.
Vulners
/
Oraclelinux
/
grub2, mokutil, shim, and shim-unsigned-x64 security update
grub2, mokutil, shim, and shim-unsigned-x64 security update
2022-07-04
00:00:00
linux.oracle.com
35
0.001 Low
EPSS
Percentile
26.5%
JSON
[2.02-123.0.4.el8_6.8]
enable multiboot2 [Orabug: 34285558]
backport arm64: Fix EFI loader kernel image allocation [Orabug: 33702462]
backport Arm: check for the PE magic for the compiled arch [Orabug: 33702462]
Backport some better script logic for BTRFS support [Orabug: 32448171]
Do not add shim and grub certificate deps for aarch64 packages [Orabug: 32670033]
Update Oracle SBAT data [Orabug: 32670033]
Use new signing certificate [Orabug: 32670033]
Fix various coverity issues [Orabug: 32530657]
Set proper blsdir if /boot is on btrfs rootfs [Orabug: 32063327]
Add CVE-2020-15706, CVE-2020-15707 to the list [Orabug: 31225072]
honor /etc/sysconfig/kernel DEFAULTKERNEL setting for BLS [Orabug: 30643497]
set EFIDIR as redhat for additional grub2 tools [Orabug: 29875597]
Update upstream references [Orabug: 26388226]
Insert Unbreakable Enterprise Kernel text into BLS config file [Orabug: 29417955]
fix symlink removal scriptlet, to be executed only on removal [Orabug: 19231481]
Fix comparison in patch for 18504756
Remove symlink to grub environment file during uninstall on EFI platforms [Orabug: 19231481]
Put ‘with’ in menuentry instead of ‘using’ [Orabug: 18504756]
Use different titles for UEK and RHCK kernels [Orabug: 18504756]
[2.06-123.el8_6.8]
CVE fixes for 2022-06-07
CVE-2022-28736 CVE-2022-28735 CVE-2022-28734 CVE-2022-28733
CVE-2021-3697 CVE-2021-3696 CVE-2021-3695
Resolves: #2031899
Affected Package
OS
Version
Architecture
Package
Version
Filename
oracle linux
8
src
grub2
< 2.02-123.0.4.el8_6.8
grub2-2.02-123.0.4.el8_6.8.src.rpm
oracle linux
8
noarch
grub2-common
< 2.02-123.0.4.el8_6.8
grub2-common-2.02-123.0.4.el8_6.8.noarch.rpm
oracle linux
8
aarch64
grub2-efi-aa64
< 2.02-123.0.4.el8_6.8
grub2-efi-aa64-2.02-123.0.4.el8_6.8.aarch64.rpm
oracle linux
8
aarch64
grub2-efi-aa64-cdboot
< 2.02-123.0.4.el8_6.8
grub2-efi-aa64-cdboot-2.02-123.0.4.el8_6.8.aarch64.rpm
oracle linux
8
noarch
grub2-efi-aa64-modules
< 2.02-123.0.4.el8_6.8
grub2-efi-aa64-modules-2.02-123.0.4.el8_6.8.noarch.rpm
oracle linux
8
noarch
grub2-efi-ia32-modules
< 2.02-123.0.4.el8_6.8
grub2-efi-ia32-modules-2.02-123.0.4.el8_6.8.noarch.rpm
oracle linux
8
noarch
grub2-efi-x64-modules
< 2.02-123.0.4.el8_6.8
grub2-efi-x64-modules-2.02-123.0.4.el8_6.8.noarch.rpm
oracle linux
8
noarch
grub2-pc-modules
< 2.02-123.0.4.el8_6.8
grub2-pc-modules-2.02-123.0.4.el8_6.8.noarch.rpm
oracle linux
8
aarch64
grub2-tools
< 2.02-123.0.4.el8_6.8
grub2-tools-2.02-123.0.4.el8_6.8.aarch64.rpm
oracle linux
8
aarch64
grub2-tools-extra
< 2.02-123.0.4.el8_6.8
grub2-tools-extra-2.02-123.0.4.el8_6.8.aarch64.rpm
Rows per page:
10
1-10 of 26
1
Related
nessus 66
oraclelinux 7
almalinux 2
osv 6
redhat 7
rocky 2
suse 2
openvas 50
redos 2
fedora 5
gentoo 1
ubuntu 1
amazon 1
rosalinux 4
ibm 1
cve 4
veracode 3
redhatcve 3
ubuntucve 5
cbl_mariner 8
nvd 4
cvelist 4
debiancve 4
photon 2
prion 3
f5 2
nessus
nessus
66
Oracle Linux 8 : grub2, / mokutil, / shim, / and / shim-unsigned-x64 (ELSA-2022-5095)
2022-07-05 00:00:00
Oracle Linux 9 : grub2 (ELSA-2022-9596)
2022-07-14 00:00:00
Oracle Linux 8 : grub2 (ELSA-2022-9595)
2022-07-14 00:00:00
oraclelinux
oraclelinux
7
grub2 security update
2022-07-14 00:00:00
grub2 security update
2022-07-14 00:00:00
grub2 security update
2022-06-07 00:00:00
almalinux
almalinux
Important: grub2, mokutil, shim, and shim-unsigned-x64 security update
2022-06-16 00:00:00
Important: grub2, mokutil, shim, and shim-unsigned-x64 security update
2022-06-16 00:00:00
osv
osv
6
Important: grub2, mokutil, shim, and shim-unsigned-x64 security update
2022-06-16 00:00:00
Important: grub2, mokutil, shim, and shim-unsigned-x64 security update
2022-06-16 13:10:10
Important: grub2, mokutil, shim, and shim-unsigned-x64 security update
2022-06-16 13:17:13
redhat
redhat
7
(RHSA-2022:5099) Important: grub2, mokutil, shim, and shim-unsigned-x64 security update
2022-06-16 13:17:13
(RHSA-2022:5096) Important: grub2, mokutil, shim, and shim-unsigned-x64 security update
2022-06-16 13:11:22
(RHSA-2022:5098) Important: grub2, mokutil, and shim security update
2022-06-16 13:14:23
rocky
rocky
grub2, mokutil, shim, and shim-unsigned-x64 security update
2022-06-16 13:10:10
grub2, mokutil, shim, and shim-unsigned-x64 security update
2022-06-16 13:17:13
suse
suse
Security update for grub2 (important)
2022-06-13 00:00:00
Security update for grub2 (important)
2022-06-10 00:00:00
openvas
openvas
50
SUSE: Security Advisory (SUSE-SU-2022:2035-1)
2022-06-13 00:00:00
Fedora: Security Advisory for grub2 (FEDORA-2022-27932fdd06)
2022-06-11 00:00:00
SUSE: Security Advisory (SUSE-SU-2022:2064-1)
2022-06-14 00:00:00
redos
redos
ROS-20240208-03
2024-02-08 00:00:00
ROS-20240208-02
2024-02-08 00:00:00
fedora
fedora
5
[SECURITY] Fedora 36 Update: grub2-2.06-42.fc36
2022-06-10 01:15:49
[SECURITY] Fedora 35 Update: grub2-2.06-11.fc35
2022-06-22 01:25:16
[SECURITY] Fedora 35 Update: shim-15.6-1
2022-06-17 01:20:06
gentoo
gentoo
GRUB: Multiple Vulnerabilities
2022-09-25 00:00:00
ubuntu
ubuntu
GRUB2 vulnerabilities
2023-09-08 00:00:00
amazon
amazon
Important: grub2
2023-07-17 17:40:00
rosalinux
rosalinux
4
Advisory ROSA-SA-2024-2341
2024-02-14 10:25:29
Advisory ROSA-SA-2023-2300
2023-12-05 10:31:19
Advisory ROSA-SA-2023-2112
2023-02-14 11:48:50
ibm
ibm
Security Bulletin: Security vulnerabilities have been fixed in IBM Security Verify Governance, Identity Manager virtual appliance component
2022-12-20 20:15:41
cve
cve
4
CVE-2022-28734
2023-07-20 01:15:10
CVE-2022-28735
2023-07-20 01:15:10
CVE-2022-28737
2023-07-20 01:15:10
veracode
veracode
Denial Of Service (DoS)
2022-06-16 04:50:15
Out-of-bound Writes
2022-06-24 08:44:02
Remote Code Execution (RCE)
2022-06-16 04:47:55
redhatcve
redhatcve
CVE-2022-28735
2022-06-07 17:19:55
CVE-2022-28737
2022-06-07 17:19:58
CVE-2022-28736
2022-06-07 17:19:57
ubuntucve
ubuntucve
5
CVE-2022-28737
2023-07-20 00:00:00
CVE-2022-28735
2023-07-20 00:00:00
CVE-2022-28733
2023-07-20 00:00:00
cbl_mariner
cbl_mariner
8
CVE-2022-28735 affecting package grub2 for versions less than 2.06-12
2023-11-08 02:07:28
CVE-2022-28735 affecting package grub2 for versions less than 2.06-14
2024-03-19 17:21:46
CVE-2022-28733 affecting package grub2 for versions less than 2.06-14
2024-03-19 17:21:46
nvd
nvd
4
CVE-2022-28735
2023-07-20 01:15:10
CVE-2022-28737
2023-07-20 01:15:10
CVE-2022-28736
2023-07-20 01:15:10
cvelist
cvelist
4
CVE-2022-28737 There's a possible overflow in handle_image() when shim tries to load and execute crafted EFI executables
2023-07-20 00:26:15
CVE-2022-28735
2023-07-20 00:22:51
CVE-2022-28736 There's a use-after-free vulnerability in grub_cmd_chainloader() function
2023-07-20 00:23:01
debiancve
debiancve
4
CVE-2022-28733
2023-07-20 01:15:10
CVE-2022-28737
2023-07-20 01:15:10
CVE-2022-28735
2023-07-20 01:15:10
photon
photon
Important Photon OS Security Update - PHSA-2023-0510
2023-01-03 00:00:00
Important Photon OS Security Update - PHSA-2023-0306
2023-01-03 00:00:00
prion
prion
Design/Logic Flaw
2023-07-20 01:15:00
Code injection
2023-07-20 01:15:00
Integer overflow
2023-07-20 01:15:00
f5
f5
K000130541 : Grub2 vulnerability CVE-2022-28734
2023-01-11 00:00:00
K000132893 : GRUB2 vulnerability CVE-2022-28733
2023-03-08 00:00:00
0.001 Low
EPSS
Percentile
26.5%
JSON
Related for ELSA-2022-5095
nessus
66
oraclelinux
7
almalinux
2
osv
6
redhat
7
rocky
2
suse
2
openvas
50
redos
2
fedora
5
gentoo
1
ubuntu
1
amazon
1
rosalinux
4
ibm
1
cve
4
veracode
3
redhatcve
3
ubuntucve
5
cbl_mariner
8
nvd
4
cvelist
4
debiancve
4
photon
2
prion
3
f5
2