Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2020-14311
Description:There is an issue with grub2 before version 2.06 while handling symlink on ext filesystems. A filesystem containing a symbolic link with an inode size of UINT32_MAX causes an arithmetic overflow leading to a zero-sized memory allocation with subsequent heap-based buffer overflow.
Test IDs: 1.3.6.1.4.1.25623.1.1.4.2020.2079.1   1.3.6.1.4.1.25623.1.0.853343   1.3.6.1.4.1.25623.1.1.4.2020.2078.1   1.3.6.1.4.1.25623.1.1.4.2020.2073.1   1.3.6.1.4.1.25623.1.0.704735   1.3.6.1.4.1.25623.1.0.853344   1.3.6.1.4.1.25623.1.1.4.2020.14440.1   1.3.6.1.4.1.25623.1.1.4.2020.2074.1   1.3.6.1.4.1.25623.1.1.4.2020.2077.1  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2020-14311
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-14311
https://security.gentoo.org/glsa/202104-05
http://www.openwall.com/lists/oss-security/2021/09/17/2
http://www.openwall.com/lists/oss-security/2021/09/17/4
http://www.openwall.com/lists/oss-security/2021/09/21/1
SuSE Security Announcement: openSUSE-SU-2020:1168 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2020-08/msg00016.html
SuSE Security Announcement: openSUSE-SU-2020:1169 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2020-08/msg00017.html
https://usn.ubuntu.com/4432-1/




© 1998-2025 E-Soft Inc. All rights reserved.