CVE-2024-45774

CVSS 3.1 Score 6.7 of 10 (medium)

Details

Published Feb 18, 2025
CWE ID 787

Summary

CVE-2024-45774 is a newly discovered vulnerability affecting grub2, a common bootloader used in Linux systems. The issue arises due to a flaw in the JPEG parser, which can cause it to incorrectly manage internal buffer bounds when processing a specially crafted JPEG file. Consequences of this vulnerability include the potential for out-of-bounds writes, with the possibility of overwriting sensitive information, including secure boot protections. Successful exploitation of this vulnerability could potentially grant unauthorized access to the system. It is important that users apply relevant patches to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share