Author Topic: Bug in Grub2 which compromises security on Login  (Read 6148 times)

0 Members and 1 Guest are viewing this topic.

norman

  • Administrator
  • Sr. Member
  • *****
  • Posts: 272
    • View Profile
    • Zipzap Computers Limited
Bug in Grub2 which compromises security on Login
« on: January 07, 2016, 02:38:53 pm »
The Grub2 bootloader from versions 1.98 to 2.02 has a bug which allows access to the system without a proper login.

At the login prompt simply press the backspace key 28 times and it allows access. Something to do with buffer overflow.

The fault has existed from December 2009 to December 2015 and is in the bootloader only. It can only occur if keyed in directly.

Norman
 ;)

« Last Edit: January 22, 2016, 04:58:42 pm by norman »