CVE Tracker

CVE-2023-4692 @ Archive

Status
accepted_risk
Priority
2.62
Match score
4.0
Risk
RCE MemCorrupt
CVSS
7.5 HIGH
Reason
cpe: grub2; pkgs: grub2-common; version: in-range: grub2-common-2.06-3~deb10u4; risk:rce
Created
2026-08-03T20:10:52Z
Updated
2026-08-22T10:17:49Z
Closed
2026-08-03T20:25:59Z

Package interrogation (copy)

Run on the host — click to copy a command. Debian/apt

PackageCommands
grub2-common-2.06-3~deb10u4
grub2

Inventory lookup

Search package inventory across systems, then return here. Create a ticket on systems the matcher missed.

Clear

Suggestions: grub2-common · grub2

SystemMatchesTicket for CVE-2023-4692
Archive grub2-common 2.06-3~deb10u4 accepted_risk open
Janus grub2-common 2.06-3~deb10u4 accepted_risk open
Library grub2-common 2.02~beta3-5+deb9u2 accepted_risk open
Saiph grub2-common 2.06-3~deb10u4 accepted_risk open
morris grub2-common 2.02 fixed open
mufasa grub2-common 2.02 fixed open
Bullseye grub2-common 2.06-3~deb11u7 none
Matrix grub2-common 2.06-13+deb12u2 none
Silk grub2-common 2.06-13+deb12u2 none

Related CVE (same fix)

Point this ticket’s CVE at a higher-priority / same-fix primary so you only triage one.

Host OS / kernel

OS
Debian GNU/Linux 10 (buster) (10) · debian
Arch
x86_64
kernel_release
uname -r → 5.10.0-25-amd64
kernel_version
uname -v → #1 SMP Debian 5.10.191-1 (2023-08-16)

For Linux kernel CVEs, kernel_version (Debian packaging / build string) often decides fixed vs not; kernel_release is used for upstream NVD range compares.

Same CVE on other hosts

Open the ticket for this CVE on another system.

System Status Priority Updated
morris fixed 9.0 2026-08-22T10:17:49Z Open
mufasa fixed 9.0 2026-08-22T10:17:49Z Open
Library accepted_risk 3.75 2026-08-22T10:17:49Z Open
Janus accepted_risk 2.62 2026-08-22T10:17:49Z Open
Saiph accepted_risk 2.62 2026-08-22T10:17:49Z Open

Description

An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This issue may allow an attacker to present a specially crafted NTFS filesystem image, leading to grub's heap metadata corruption. In some circumstances, the attack may also corrupt the UEFI firmware heap metadata. As a result, arbitrary code execution and secure boot protection bypass may be achieved.

Determination

Issue: Out-of-bounds write (heap overflow) in GRUB2’s NTFS filesystem driver.
Impact: An attacker who can present a specially crafted NTFS filesystem image to GRUB can corrupt heap metadata. In some cases this can lead to arbitrary code execution in the boot environment and Secure Boot bypass.
Attack requirements: Local access to control the boot media (e.g. USB, external drive, or in some network boot scenarios).
Risk : Extremely low

Update status

Also apply to other systems with this CVE:

Add note only

Also add note on:

Mitigation log

2026-08-03T20:24:56Z — affects
Issue: Out-of-bounds write (heap overflow) in GRUB2’s NTFS filesystem driver. Impact: An attacker who can present a specially crafted NTFS filesystem image to GRUB can corrupt heap metadata. In some cases this can lead to arbitrary code execution in the boot environment and Secure Boot bypass. Attack requirements: Local access to control the boot media (e.g. USB, external drive, or in some network boot scenarios).
2026-08-03T20:25:25Z
Requires Physical Access to machine and NTFS boot media.
2026-08-03T20:25:59Z — accepted_risk
Risk : Extremely low

References

NVD: CVE-2023-4692