Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3190-1 | grub2 security update |
Debian DLA |
DLA-3190-2 | grub2 security update |
Debian DSA |
DSA-5280-1 | grub2 security update |
EUVD |
EUVD-2022-34848 | A buffer overflow was found in grub_font_construct_glyph(). A malicious crafted pf2 font can lead to an overflow when calculating the max_glyph_size value, allocating a smaller than needed buffer for the glyph, this further leads to a buffer overflow and a heap based out-of-bounds write. An attacker may use this vulnerability to circumvent the secure boot mechanism. |
Wed, 27 May 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 22 Nov 2024 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Subscriptions
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2026-05-27T14:04:59.552Z
Reserved: 2022-08-01T00:00:00.000Z
Link: CVE-2022-2601
Updated: 2024-08-22T01:13:28.591Z
Status : Modified
Published: 2022-12-14T21:15:10.190
Modified: 2026-06-17T04:42:11.660
Link: CVE-2022-2601
OpenCVE Enrichment
No data.
Debian DLA
Debian DSA
EUVD