CVE-2025-0684 is a heap-based out-of-bounds write vulnerability in GNU GRUB2, specifically within its reiserfs filesystem module. This flaw allows an attacker to craft a malicious reiserfs filesystem that causes integer overflows during buffer size calculations, leading to a smaller-than-expected memory allocation. Consequently, a subsequent read operation can result in an out-of-bounds write, corrupting GRUB's critical data and potentially enabling arbitrary code execution, even bypassing Secure Boot. The vulnerability has a CVSS score of 6.4 (Medium), indicating a local attack vector with high attack complexity, requiring high privileges, but with no user interaction. Its potential impact includes high confidentiality, integrity, and availability compromise. Currently, there is no evidence of active exploitation, and no public exploit code (Metasploit, Nuclei, ExploitDB) is available. While community discussion is limited, the vulnerability has garnered some media attention, including an article from BleepingComputer.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 2.12CPE matchmatch criteria | cpe:2.3:a:gnu:grub2:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Grub2: reiserfs: integer overflow when handling symlinks may lead to heap based out-of-bounds write when reading data
Mar 11, 2025grub2: reiserfs: Integer overflow when handling symlinks may lead to heap based out-of-bounds write when reading data
Feb 18, 2025