Microsoft uses artificial intelligence to find flaws in GRUB2, U-Boot, and Barebox bootloaders. Microsoft has discovered 11 vulnerabilities in GRUB2, including integer and buffer overflows in the file system parser, command flaws, and...
Microsoft Uses AI to Find Flaws in GRUB2, U-Boot, Barebox Bootloaders. Microsoft Found 11 Vulnerabilities in GRUB2, Including Integer and Buffer Overflows in the File System Parser, Command Defects, and...
via cnBeta.COM Chinese Industry Information Station - Telegram Channel
Telegraph
Microsoft Uses AI to Find Flaws in GRUB2, U-Boot, Barebox Bootloaders. Microsoft Found 11…Microsoft Uses AI to Find Flaws in GRUB2, U-Boot, Barebox Bootloaders. Microsoft found 11 vulnerabilities in GRUB2, including integer and buffer overflows in the file system parser, command defects, and side channels in cryptographic comparisons. In addition, 9 buffer overflow vulnerabilities in parsing SquashFS, EXT4, CramFS, JFFS2, and symbolic links were found in U-Boot and Barebox, which require physical access to exploit. The newly discovered vulnerabilities affect devices that rely on UEFI Secure Boot. If the correct conditions are met, an attacker can bypass security protections and execute arbitrary code on the device. Although exploiting these vulnerabilities can…