CVE-2017-9763
The grub_ext2_read_block function in fs/ext2.c in GNU GRUB before 2013-11-12, as used in shlr/grub/fs/ext2.c in radare2 1.5.0, allows remote attackers to cause a denial of service (excessive stack use and application crash) via a crafted binary file,…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (4.19%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
The grub_ext2_read_block function in fs/ext2.c in GNU GRUB before 2013-11-12, as used in shlr/grub/fs/ext2.c in radare2 1.5.0, allows remote attackers to cause a denial of service (excessive stack use and application crash) via a crafted binary file, related to use of a variable-size stack array.
- CVSS 3.0
- 7.5 HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 4.19% probability · 90th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-119
- Affected
- radare/radare2
- Source
- cve@mitre.org
References
- http://git.savannah.gnu.org/cgit/grub.git/commit/grub-core/fs/ext2.c?id=ac8cac1dac50daaf1c390d701cca3b55e16ee768Patch, Third Party Advisory
- http://www.securityfocus.com/bid/99141Third Party Advisory, VDB Entry
- https://github.com/radare/radare2/commit/65000a7fd9eea62359e6d6714f17b94a99a82eddPatch, Third Party Advisory
- https://github.com/radare/radare2/issues/7723Patch, Third Party Advisory
- http://git.savannah.gnu.org/cgit/grub.git/commit/grub-core/fs/ext2.c?id=ac8cac1dac50daaf1c390d701cca3b55e16ee768Patch, Third Party Advisory
- http://www.securityfocus.com/bid/99141Third Party Advisory, VDB Entry
- https://github.com/radare/radare2/commit/65000a7fd9eea62359e6d6714f17b94a99a82eddPatch, Third Party Advisory
- https://github.com/radare/radare2/issues/7723Patch, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.