Database/Firmware, BMC & network fabric
GRUB2 (JFS symlink handling): Symlink integer overflow in the JFS parser producing a heap out-of-bounds write
CVE-2025-0685Firmware, BMC & network fabricGRUB2 2025 batchcurated
Impact
Symlink integer overflow in the JFS parser producing a heap out-of-bounds write.
Who can reach it
Attacker-supplied JFS image.
What to do
grub2 package update + reboot; or drop the unused module from the build.
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.