Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:36002
HistoryJun 15, 2022 - 4:11 p.m.

Remote Code Execution (RCE)

2022-06-1516:11:08
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8

0.0005 Low

EPSS

Percentile

18.1%

grub2 is vulnerable to remote code execution. The vulnerability exists due to an out-of-bounds write in the heap area allowing an attacker to inject maliciously crafted script into the system via a crafted 16-bit grayscale PNG image which allows an attacker to inject malicious codes.