CVE-2025-0686 is a critical flaw in grub2 where improper integer overflow checks during symlink lookups in romfs filesystems can lead to out-of-bounds writes. This vulnerability, with a CVSS score of 6.4 (MEDIUM), allows an attacker with high privileges and complex conditions to corrupt GRUB's internal data, potentially bypassing secure boot and achieving arbitrary code execution. Currently, there is no public exploit code available, it is not listed in CISA's KEV catalog, and community discussion is minimal, though it has received some media attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 2.12CPE matchmatch criteria | cpe:2.3:a:gnu:grub2:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Grub2: romfs: integer overflow when handling symlinks may lead to heap based out-of-bounds write when reading dat
Mar 11, 2025grub2: romfs: Integer overflow when handling symlinks may lead to heap based out-of-bounds write when reading dat
Feb 18, 2025