Lucene search

K
ubuntucveUbuntu.comUB:CVE-2022-28733
HistoryJul 20, 2023 - 12:00 a.m.

CVE-2022-28733

2023-07-2000:00:00
ubuntu.com
ubuntu.com
34
integer underflow
grub_net_recv_ip4_packets
memory corruption
total_len
memory allocation
buffer overflow

8.1 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

0.001 Low

EPSS

Percentile

26.5%

Integer underflow in grub_net_recv_ip4_packets; A malicious crafted IP
packet can lead to an integer underflow in grub_net_recv_ip4_packets()
function on rsm->total_len value. Under certain circumstances the total_len
value may end up wrapping around to a small integer number which will be
used in memory allocation. If the attack succeeds in such way, subsequent
operations can write past the end of the buffer.

Notes

Author Note
eslerm CWE-191

8.1 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

0.001 Low

EPSS

Percentile

26.5%