Lucene search
Basic search
Lucene search
Search by product
Subscribe
K
Start 30-day trial
Database
Vendors
Products
Years
CVSS
Scanner
Agent Scanning
API Scanning
Manual Audit
Perimeter Scanner
Scanning
Projects
Email
Webhook
Plugins
Resources
Documents
Blog
Glossary
FAQ
Pricing
Contacts
About Us
Partners
Branding Guideline
SIGN IN
OracleLinux
ELSA-2023-0049
History
Jan 25, 2023 - 12:00 a.m.
Vulners
/
Oraclelinux
/
grub2 security update
grub2 security update
2023-01-25
00:00:00
linux.oracle.com
22
grub2
security update
cve fixes
enable signing
aarch64
protocol fixes
0.001 Low
EPSS
Percentile
26.7%
JSON
[2.02-142.0.3.el8_7.1]
Fix CVE-2022-3775, CVE-2022-2601 [Orabug: 34867710]
Bump SBAT metadata for grub to 3 [Orabug: 34871758]
Enable signing on aarch64
Don’t try to switch to a BLS config if GRUB_ENABLE_BLSCFG is already set (Javier Martinez Canillas) [Orabug: 34375996]
Enable back btrfs module by default [Orabug: 34377188]
Backport upstream SNP protocol fixes [Orabug: 34195100]
Rebase Fix EFI loader kernel image allocation patch, adapt it to new NX code [Orabug: 34352232]
enable multiboot2 [Orabug: 34285558]
backport arm64: Fix EFI loader kernel image allocation [Orabug: 33702462]
backport Arm: check for the PE magic for the compiled arch [Orabug: 33702462]
Backport some better script logic for BTRFS support [Orabug: 32448171]
Do not add shim and grub certificate deps for aarch64 packages [Orabug: 32670033]
Update Oracle SBAT data [Orabug: 32670033]
Use new signing certificate [Orabug: 32670033]
Fix various coverity issues [Orabug: 32530657]
Set proper blsdir if /boot is on btrfs rootfs [Orabug: 32063327]
Add CVE-2020-15706, CVE-2020-15707 to the list [Orabug: 31225072]
honor /etc/sysconfig/kernel DEFAULTKERNEL setting for BLS [Orabug: 30643497]
set EFIDIR as redhat for additional grub2 tools [Orabug: 29875597]
Update upstream references [Orabug: 26388226]
Insert Unbreakable Enterprise Kernel text into BLS config file [Orabug: 29417955]
fix symlink removal scriptlet, to be executed only on removal [Orabug: 19231481]
Fix comparison in patch for 18504756
Remove symlink to grub environment file during uninstall on EFI platforms [Orabug: 19231481]
Put ‘with’ in menuentry instead of ‘using’ [Orabug: 18504756]
Use different titles for UEK and RHCK kernels [Orabug: 18504756]
[2.02-142.el8_7.1]
Sync with 8.8 (actually 2.02-145)
Resolves: CVE-2022-2601
Affected Package
OS
Version
Architecture
Package
Version
Filename
oracle linux
8
src
grub2
< 2.02-142.0.3.el8_7.1
grub2-2.02-142.0.3.el8_7.1.src.rpm
oracle linux
8
noarch
grub2-common
< 2.02-142.0.3.el8_7.1
grub2-common-2.02-142.0.3.el8_7.1.noarch.rpm
oracle linux
8
aarch64
grub2-efi-aa64
< 2.02-142.0.3.el8_7.1
grub2-efi-aa64-2.02-142.0.3.el8_7.1.aarch64.rpm
oracle linux
8
aarch64
grub2-efi-aa64-cdboot
< 2.02-142.0.3.el8_7.1
grub2-efi-aa64-cdboot-2.02-142.0.3.el8_7.1.aarch64.rpm
oracle linux
8
noarch
grub2-efi-aa64-modules
< 2.02-142.0.3.el8_7.1
grub2-efi-aa64-modules-2.02-142.0.3.el8_7.1.noarch.rpm
oracle linux
8
noarch
grub2-efi-ia32-modules
< 2.02-142.0.3.el8_7.1
grub2-efi-ia32-modules-2.02-142.0.3.el8_7.1.noarch.rpm
oracle linux
8
noarch
grub2-efi-x64-modules
< 2.02-142.0.3.el8_7.1
grub2-efi-x64-modules-2.02-142.0.3.el8_7.1.noarch.rpm
oracle linux
8
noarch
grub2-pc-modules
< 2.02-142.0.3.el8_7.1
grub2-pc-modules-2.02-142.0.3.el8_7.1.noarch.rpm
oracle linux
8
aarch64
grub2-tools
< 2.02-142.0.3.el8_7.1
grub2-tools-2.02-142.0.3.el8_7.1.aarch64.rpm
oracle linux
8
aarch64
grub2-tools-extra
< 2.02-142.0.3.el8_7.1
grub2-tools-extra-2.02-142.0.3.el8_7.1.aarch64.rpm
Rows per page:
10
1-10 of 26
1
Related
nessus 51
fedora 3
openvas 29
rocky 2
redhat 11
debian 3
osv 8
redos 1
ibm 3
rosalinux 2
almalinux 2
oraclelinux 3
gentoo 1
photon 4
cbl_mariner 6
prion 2
veracode 2
redhatcve 2
ubuntucve 2
nvd 2
debiancve 2
cve 2
cvelist 2
amazon 1
ubuntu 1
hp 2
avleonov 1
nessus
nessus
51
RHEL 8 : grub2 (RHSA-2022:8800)
2022-12-06 00:00:00
RHEL 8 : grub2 (RHSA-2023:0047)
2023-01-09 00:00:00
SUSE SLES15 Security Update : grub2 (SUSE-SU-2022:4140-1)
2022-11-22 00:00:00
fedora
fedora
[SECURITY] Fedora 35 Update: grub2-2.06-14.fc35
2022-12-01 01:39:11
[SECURITY] Fedora 36 Update: grub2-2.06-57.fc36
2022-11-27 01:37:59
[SECURITY] Fedora 37 Update: grub2-2.06-63.fc37
2022-11-18 01:18:26
openvas
openvas
29
Huawei EulerOS: Security Advisory for grub2 (EulerOS-SA-2023-1407)
2023-03-07 00:00:00
SUSE: Security Advisory (SUSE-SU-2022:4140-1)
2022-11-22 00:00:00
SUSE: Security Advisory (SUSE-SU-2022:4143-1)
2022-11-22 00:00:00
rocky
rocky
grub2 security update
2023-01-09 14:23:31
grub2 security update
2023-02-16 06:35:52
redhat
redhat
11
(RHSA-2022:8494) Moderate: grub2 security update
2022-11-16 10:37:16
(RHSA-2023:0048) Moderate: grub2 security and bug fix update
2023-01-09 14:22:50
(RHSA-2023:0752) Moderate: grub2 security update
2023-02-14 09:02:50
debian
debian
[SECURITY] [DSA 5280-1] grub2 security update
2022-11-15 19:50:06
[SECURITY] [DLA 3190-1] grub2 security update
2022-11-16 09:12:12
[SECURITY] [DLA 3190-2] grub2 security update
2022-12-10 08:22:59
osv
osv
8
Moderate: grub2 security update
2023-02-14 00:00:00
Moderate: grub2 security update
2023-01-09 00:00:00
grub2 - security update
2022-12-10 00:00:00
redos
redos
ROS-20240403-05
2024-04-03 00:00:00
ibm
ibm
Security Bulletin: IBM Watson Assistant for IBM Cloud Pak for Data is vulnerable to Linux Kernel Buffer overflow and denial of service vulnerabilities( CVE-2022-2601, CVE-2022-3775)
2023-07-05 21:12:35
Security Bulletin: Vulnerabilities in Linux Kernel might affect IBM Spectrum Copy Data Management (CVE-2022-2964, CVE-2022-2601, CVE-2020-36557)
2023-03-16 15:23:12
Security Bulletin: Vulnerabilities in Node.js, libcurl, Golang Go, Jetty, Guava, Netty, OpenSSL, Linux kernel may affect IBM Spectrum Protect Plus
2023-03-23 20:19:15
rosalinux
rosalinux
Advisory ROSA-SA-2024-2348
2024-02-20 08:52:02
Advisory ROSA-SA-2024-2341
2024-02-14 10:25:29
almalinux
almalinux
Moderate: grub2 security update
2023-01-09 00:00:00
Moderate: grub2 security update
2023-02-14 00:00:00
oraclelinux
oraclelinux
grub2 security update
2023-01-12 00:00:00
grub2 security update
2023-06-13 00:00:00
grub2 security update
2024-05-01 00:00:00
gentoo
gentoo
GRUB: Multiple Vulnerabilities
2023-11-25 00:00:00
photon
photon
4
Important Photon OS Security Update - PHSA-2022-4.0-0303
2022-12-21 00:00:00
Important Photon OS Security Update - PHSA-2022-0303
2022-12-21 00:00:00
Important Photon OS Security Update - PHSA-2022-0550
2022-12-21 00:00:00
cbl_mariner
cbl_mariner
6
CVE-2022-3775 affecting package grub2 2.06~rc1-9
2023-03-02 04:18:34
CVE-2022-3775 affecting package grub2 for versions less than 2.06-10
2023-06-27 20:56:13
CVE-2022-3775 affecting package grub2 for versions less than 2.06-14
2024-03-19 17:21:46
prion
prion
Heap overflow
2022-12-19 20:15:00
Heap overflow
2022-12-14 21:15:00
veracode
veracode
Denial Of Service (DoS)
2022-11-20 23:05:07
Buffer Overflow
2022-11-23 05:01:42
redhatcve
redhatcve
CVE-2022-3775
2022-11-15 18:43:55
CVE-2022-2601
2022-11-15 18:40:37
ubuntucve
ubuntucve
CVE-2022-3775
2022-12-19 00:00:00
CVE-2022-2601
2022-12-14 00:00:00
nvd
nvd
CVE-2022-3775
2022-12-19 20:15:11
CVE-2022-2601
2022-12-14 21:15:10
debiancve
debiancve
CVE-2022-3775
2022-12-19 20:15:11
CVE-2022-2601
2022-12-14 21:15:10
cve
cve
CVE-2022-3775
2022-12-19 20:15:11
CVE-2022-2601
2022-12-14 21:15:10
cvelist
cvelist
CVE-2022-3775
2022-12-19 00:00:00
CVE-2022-2601
2022-12-14 00:00:00
amazon
amazon
Important: grub2
2023-07-17 17:40:00
ubuntu
ubuntu
GRUB2 vulnerabilities
2023-09-08 00:00:00
hp
hp
HP ThinPro 8.0 SP 7 Security Updates
2024-01-26 00:00:00
HP ThinPro 8.0 SP 8 Security Updates
2024-03-01 00:00:00
avleonov
avleonov
Scanvus now supports Vulners and Vulns.io VM Linux vulnerability detection APIs
2022-12-30 18:03:13
0.001 Low
EPSS
Percentile
26.7%
JSON
Related for ELSA-2023-0049
nessus
51
fedora
3
openvas
29
rocky
2
redhat
11
debian
3
osv
8
redos
1
ibm
3
rosalinux
2
almalinux
2
oraclelinux
3
gentoo
1
photon
4
cbl_mariner
6
prion
2
veracode
2
redhatcve
2
ubuntucve
2
nvd
2
debiancve
2
cve
2
cvelist
2
amazon
1
ubuntu
1
hp
2
avleonov
1