]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core.git/commit
grub2: CVE-2021-3981 Incorrect permission in grub.cfg allow unprivileged user to...
authorHitendra Prajapati <hprajapati@mvista.com>
Wed, 29 Jun 2022 05:54:07 +0000 (11:24 +0530)
committerSteve Sakoman <steve@sakoman.com>
Wed, 29 Jun 2022 15:15:49 +0000 (05:15 -1000)
commitfd9dc688ead5cf0225cba94c380a618e332d548f
tree07eab02d09da8e46d5a753085de39286c1877e10
parent14b3c0ca46a0aa97565a24b7a5116306237d7cfe
grub2: CVE-2021-3981 Incorrect permission in grub.cfg allow unprivileged user to read the file content

Source: https://git.savannah.gnu.org/cgit/grub.git/
MR: 116495
Type: Security Fix
Disposition: Backport from https://git.savannah.gnu.org/cgit/grub.git/diff/util/grub-mkconfig.in?id=0adec29674561034771c13e446069b41ef41e4d4
ChangeID: fce3d59e50320bef247bb981352051b8f953a4fc
Description:
        CVE-2021-3981 grub2: Incorrect permission in grub.cfg allow unprivileged user to read the file content.

Affects "grub2 < 2.06"

Signed-off-by: Hitendra Prajapati <hprajapati@mvista.com>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
meta/recipes-bsp/grub/files/CVE-2021-3981.patch [new file with mode: 0644]
meta/recipes-bsp/grub/grub2.inc