Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 542
Alerts This Week
Warning Icon 1 542

Fedora 22: 2015-2c155d7632 Critical: Grub2 EFI Module Issue

fedora
Calendar Grey November 30, 2015
Scroller Fedora
Recompile with single boot components in EFI installation for Fedora 22 grub2 vulnerability patch focusing on severe risks.
Rebuild without multiboot* modules in the EFI image.

Summary

The GRand Unified Bootloader (GRUB) is a highly configurable and customizable

bootloader with modular architecture. It support rich varietyof kernel formats,

file systems, computer architectures and hardware devices. This subpackage

provides support for PC BIOS systems.

Update Information:

Rebuild without multiboot* modules in the EFI image.

Change Log

References


[ 1 ] Bug #1264103 - CVE-2015-5281 grub2: modules built in on EFI builds that allow loading arbitrary code, circumventing secure boot https://bugzilla.redhat.com/show_bug.cgi?id=1264103

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update grub2' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
critical
Lowest
Low
Medium
High
Critical

Name: grub2
Product: Fedora 22
Version: 2.02
Release: 0.17.fc22
URL:
Summary: Bootloader with support for Linux, Multiboot and more

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.