Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2025:20532 - Security Advisory
Issued:
2025-11-11
Updated:
2025-11-11

RHSA-2025:20532 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: grub2 security update

Type/Severity

Security Advisory: Moderate

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for grub2 is now available for Red Hat Enterprise Linux 9.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

The grub2 packages provide version 2 of the Grand Unified Boot Loader (GRUB), a highly configurable and customizable boot loader with modular architecture. The packages support a variety of kernel formats, file systems, computer architectures, and hardware devices.

Security Fix(es):

  • grub2: grub-core/gettext: Integer overflow leads to Heap OOB Write. (CVE-2024-45777)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the Red Hat Enterprise Linux 9 Release Notes linked from the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 9 x86_64
  • Red Hat Enterprise Linux for Power, little endian 9 ppc64le
  • Red Hat Enterprise Linux for ARM 64 9 aarch64

Fixes

  • BZ - 2346343 - CVE-2024-45777 grub2: grub-core/gettext: Integer overflow leads to Heap OOB Write.
  • RHEL-87421 - SBAT support on powerpc [rhel-9.7]
  • RHEL-91278 - Bump grub sbat [9.7.0]
  • RHEL-108060 - Add sbat entry for centos
  • RHEL-44336 - Cannot install RHEL9 systems in UEFI on DDF containers

CVEs

  • CVE-2024-45777

References

  • https://access.redhat.com/security/updates/classification/#moderate
  • https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/9/html/9.7_release_notes/index
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 9

SRPM
grub2-2.06-114.el9_7.src.rpm SHA-256: edbffb4d754fb25886dd0150160e75e3e6513a8b238ab92b3b40199d32260173
x86_64
grub2-common-2.06-114.el9_7.noarch.rpm SHA-256: 60cc3e9a353856e4f2f04b8f2f8869ea672c82ef1df5ab76e50adf573c0be287
grub2-debuginfo-2.06-114.el9_7.x86_64.rpm SHA-256: c167b745eed41c0a96f7e802516c47dd93d91154c03e9e854c42f8317e0757cd
grub2-debugsource-2.06-114.el9_7.x86_64.rpm SHA-256: 55800e91dc1ecb94350c3f3465c5232d1c119bdff34c8886f73f366df717c4bc
grub2-efi-aa64-modules-2.06-114.el9_7.noarch.rpm SHA-256: e2e267da53c802a6012f9912e7ebdb2648a47d95b5becc775047aafe8b279bee
grub2-efi-x64-2.06-114.el9_7.x86_64.rpm SHA-256: da75b5613b3ac4c1aac3de14a65993242b81ab081ce88fb20bd68406901f2b83
grub2-efi-x64-cdboot-2.06-114.el9_7.x86_64.rpm SHA-256: 418c5bf2956effc44c28ad9c3d63eb3763172a8e15b87c66329ac3780b63bf17
grub2-efi-x64-modules-2.06-114.el9_7.noarch.rpm SHA-256: 57eb157b5876fd634337d8e4e0905a71cdec534bad21a15755ef4fefba710a57
grub2-emu-debuginfo-2.06-114.el9_7.x86_64.rpm SHA-256: fa8c3067053d6c107a0d18512c5de3c7275831c2c7c0b059b224f437bbeeb527
grub2-pc-2.06-114.el9_7.x86_64.rpm SHA-256: 84b95486275623994955960bc765e69ba5c117715ff37d0e505b0f0c8427be4e
grub2-pc-modules-2.06-114.el9_7.noarch.rpm SHA-256: 733039552bc1092c1a29275f9a4b15c90b202f2870141aca37e6692f0a175271
grub2-tools-2.06-114.el9_7.x86_64.rpm SHA-256: 4defa837eb0d99734d212c991bda611312647fca184a6042ce01bc0a80837cc8
grub2-tools-debuginfo-2.06-114.el9_7.x86_64.rpm SHA-256: 794cc7bca921f20d5c4bbd4f6cc8d8b1f6b96a1ffcb000f580d7425bc83be009
grub2-tools-efi-2.06-114.el9_7.x86_64.rpm SHA-256: 0dc1759104f899229fdb72957870f6b7025b8365cdd11db3284df3b0300db405
grub2-tools-efi-debuginfo-2.06-114.el9_7.x86_64.rpm SHA-256: 6e2dfcec9a3c1dcd09ae97ddc03087711be222859be19bfb9d45510778c7e262
grub2-tools-extra-2.06-114.el9_7.x86_64.rpm SHA-256: a3bdd87f446d517f1348ecf28d546129f1ce9a7065cf5430c6060cf2bdf796f5
grub2-tools-extra-debuginfo-2.06-114.el9_7.x86_64.rpm SHA-256: 62df57e59b6e08ea48d43ff96030e559af1eeb01636af38a95fac3553c6bc1d3
grub2-tools-minimal-2.06-114.el9_7.x86_64.rpm SHA-256: fdab49e59c01cd3ff6378b7f34628d26e5c091b49740364859da447b7a229945
grub2-tools-minimal-debuginfo-2.06-114.el9_7.x86_64.rpm SHA-256: 5274ab3c4deb3058a7167ff4a4dde430deab3c84f8cf4f1d650e8c74040c3d80

Red Hat Enterprise Linux for Power, little endian 9

SRPM
grub2-2.06-114.el9_7.src.rpm SHA-256: edbffb4d754fb25886dd0150160e75e3e6513a8b238ab92b3b40199d32260173
ppc64le
grub2-common-2.06-114.el9_7.noarch.rpm SHA-256: 60cc3e9a353856e4f2f04b8f2f8869ea672c82ef1df5ab76e50adf573c0be287
grub2-debuginfo-2.06-114.el9_7.ppc64le.rpm SHA-256: 7429b307cc920a10533e219e548e2f8b345837fa6530df754dd21f32b36237a6
grub2-debugsource-2.06-114.el9_7.ppc64le.rpm SHA-256: bc0ed3bb697ec8a1cfa465de023ad486df4c004617604147b645e6e9bf5ca1bb
grub2-efi-aa64-modules-2.06-114.el9_7.noarch.rpm SHA-256: e2e267da53c802a6012f9912e7ebdb2648a47d95b5becc775047aafe8b279bee
grub2-efi-x64-modules-2.06-114.el9_7.noarch.rpm SHA-256: 57eb157b5876fd634337d8e4e0905a71cdec534bad21a15755ef4fefba710a57
grub2-ppc64le-2.06-114.el9_7.ppc64le.rpm SHA-256: 0b07fea96bd860e488ed706e6131c704ba2aab9cc3a3c9c2bc0bcb80c1994d78
grub2-ppc64le-modules-2.06-114.el9_7.noarch.rpm SHA-256: c77589d919efa5963e7a3fc6599ae6ee75db11d2360ce0a223d900ebc37bb890
grub2-tools-2.06-114.el9_7.ppc64le.rpm SHA-256: 614e6782fda4720c5e13e5ea4baadb485ea35bf88eb9b20d9e3d300611bf919a
grub2-tools-debuginfo-2.06-114.el9_7.ppc64le.rpm SHA-256: e14e654400f7bd13df7846026ab250764bfed1edf1887cc512208c1bc5d3b838
grub2-tools-extra-2.06-114.el9_7.ppc64le.rpm SHA-256: 4212595a540ac0ec07005852e70b1c41295b5b06aa8d3ae7f5dbc0dad9d88ccd
grub2-tools-extra-debuginfo-2.06-114.el9_7.ppc64le.rpm SHA-256: 12017795758405316b99c8eb3adac2b2ca448d55b4092dc53fb19d75e1045580
grub2-tools-minimal-2.06-114.el9_7.ppc64le.rpm SHA-256: 2ab5dc3ba89c0d91176326561777a79dce32a54863c8246409fdf010157e50ee
grub2-tools-minimal-debuginfo-2.06-114.el9_7.ppc64le.rpm SHA-256: e1e73af6f16a749f4ff4bc2642786ec78c6c89c601085cf44e405eb7a9b6bc6c

Red Hat Enterprise Linux for ARM 64 9

SRPM
grub2-2.06-114.el9_7.src.rpm SHA-256: edbffb4d754fb25886dd0150160e75e3e6513a8b238ab92b3b40199d32260173
aarch64
grub2-common-2.06-114.el9_7.noarch.rpm SHA-256: 60cc3e9a353856e4f2f04b8f2f8869ea672c82ef1df5ab76e50adf573c0be287
grub2-debuginfo-2.06-114.el9_7.aarch64.rpm SHA-256: 07710de2007eefaacc4d4941668385f541e500a8af1f0fcd4bdb671d68851a72
grub2-debugsource-2.06-114.el9_7.aarch64.rpm SHA-256: 1846d8d2bb590c6b157e781e58fe80a1e822053585382e212b672ef5391bd63b
grub2-efi-aa64-2.06-114.el9_7.aarch64.rpm SHA-256: cfdfb52de51749f09628f72bad612abed20ba868ea2112236772c79593b4e03a
grub2-efi-aa64-cdboot-2.06-114.el9_7.aarch64.rpm SHA-256: 98547db17d50e0f86456cd26f644ffbbf3816d5b3da0bd9493735a858930fae8
grub2-efi-aa64-modules-2.06-114.el9_7.noarch.rpm SHA-256: e2e267da53c802a6012f9912e7ebdb2648a47d95b5becc775047aafe8b279bee
grub2-efi-x64-modules-2.06-114.el9_7.noarch.rpm SHA-256: 57eb157b5876fd634337d8e4e0905a71cdec534bad21a15755ef4fefba710a57
grub2-emu-debuginfo-2.06-114.el9_7.aarch64.rpm SHA-256: 71b8df4afed79945a67a8fc03fec02d3d0e0d1f376afa067ee960c175e259a7e
grub2-tools-2.06-114.el9_7.aarch64.rpm SHA-256: d322846934835ccd27b1d954e38f20dca94d64f5b92d95963bfa9cab9ed22597
grub2-tools-debuginfo-2.06-114.el9_7.aarch64.rpm SHA-256: 89bf691d583f670ac63bc29e77d705a5f3e851072418e07e564b2207beff1179
grub2-tools-extra-2.06-114.el9_7.aarch64.rpm SHA-256: 261189239ea576157ea80435b34fedaa5e69a3c32448fc102985e978b79d886e
grub2-tools-extra-debuginfo-2.06-114.el9_7.aarch64.rpm SHA-256: bc18a369270baf62c3725c269dc7233cea65966679fe96172700b6289dcc2ff5
grub2-tools-minimal-2.06-114.el9_7.aarch64.rpm SHA-256: 057c35e37158a7cf197619ec3d76eb7f391de1fdb588323b88dd56b2bd7215ae
grub2-tools-minimal-debuginfo-2.06-114.el9_7.aarch64.rpm SHA-256: d0165e0d5b466375ee3ab061fe02b3e0c8328437d3f645435d7e863aa763f7a9

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility