Lucene search

K
prionPRIOn knowledge basePRION:CVE-2021-3697
HistoryJul 06, 2022 - 4:15 p.m.

Design/Logic Flaw

2022-07-0616:15:00
PRIOn knowledge base
www.prio-n.com
10

8.2 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

15.7%

A crafted JPEG image may lead the JPEG reader to underflow its data pointer, allowing user-controlled data to be written in heap. To a successful to be performed the attacker needs to perform some triage over the heap layout and craft an image with a malicious format and payload. This vulnerability can lead to data corruption and eventual code execution or secure boot circumvention. This flaw affects grub2 versions prior grub-2.12.