Today > vulnerabilities   -   You can now download lists of IOCs here!

CVE-2024-49504

Nov. 13, 2024, 7:35 p.m.

Product(s) Impacted

GRUB2

Description

grub2 allowed attackers with access to the grub shell to access files on the encrypted disks.

Weaknesses

CWE-276
Incorrect Default Permissions

During installation, installed file permissions are set to allow anyone to modify those files.

CWE ID: 276

Date

Published: Nov. 13, 2024, 3:15 p.m.

Last Modified: Nov. 13, 2024, 7:35 p.m.

Status : Awaiting Analysis

CVE has been recently published to the CVE List and has been received by the NVD.

More info

Source

meissner@suse.de

References