CVE-2020-14311
—CVSS 3.1
6.0 medium
EPSS
<1%p39
Published
()
Modified
Description
There is an issue with grub2 before version 2.06 while handling symlink on ext filesystems. A filesystem containing a symbolic link with an inode size of UINT32_MAX causes an arithmetic overflow leading to a zero-sized memory allocation with subsequent heap-based buffer overflow.
In the news0 stories
No ingested article mentions this CVE yet.