#VU51197 Out-of-bounds write in grub - CVE-2021-20225
Published: March 3, 2021 / Updated: December 17, 2024
grub
GNU
Description
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to a boundary error within the option parser. A local privileged user can write past the end of a heap-allocated buffer by calling certain commands with a large number of specific short forms of options and execute arbitrary code with elevated privileges.