Low severity3.3NVD Advisory· Published Feb 6, 2024· Updated Jun 17, 2026
CVE-2024-1048
CVE-2024-1048
Description
A flaw was found in the grub2-set-bootflag utility of grub2. After the fix of CVE-2019-14865, grub2-set-bootflag will create a temporary file with the new grubenv content and rename it to the original grubenv file. If the program is killed before the rename operation, the temporary file will not be removed and may fill the filesystem when invoked multiple times, resulting in a filesystem out of free inodes or blocks.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
20- osv-coords18 versionspkg:rpm/almalinux/grub2-commonpkg:rpm/almalinux/grub2-efi-aa64pkg:rpm/almalinux/grub2-efi-aa64-cdbootpkg:rpm/almalinux/grub2-efi-aa64-modulespkg:rpm/almalinux/grub2-efi-ia32pkg:rpm/almalinux/grub2-efi-ia32-cdbootpkg:rpm/almalinux/grub2-efi-ia32-modulespkg:rpm/almalinux/grub2-efi-x64pkg:rpm/almalinux/grub2-efi-x64-cdbootpkg:rpm/almalinux/grub2-efi-x64-modulespkg:rpm/almalinux/grub2-pcpkg:rpm/almalinux/grub2-pc-modulespkg:rpm/almalinux/grub2-ppc64lepkg:rpm/almalinux/grub2-ppc64le-modulespkg:rpm/almalinux/grub2-toolspkg:rpm/almalinux/grub2-tools-efipkg:rpm/almalinux/grub2-tools-extrapkg:rpm/almalinux/grub2-tools-minimal
< 1:2.06-77.el9.alma.1+ 17 more
- (no CPE)range: < 1:2.06-77.el9.alma.1
- (no CPE)range: < 1:2.06-77.el9.alma.1
- (no CPE)range: < 1:2.06-77.el9.alma.1
- (no CPE)range: < 1:2.06-77.el9.alma.1
- (no CPE)range: < 1:2.02-156.el8.alma.1
- (no CPE)range: < 1:2.02-156.el8.alma.1
- (no CPE)range: < 1:2.02-156.el8.alma.1
- (no CPE)range: < 1:2.06-77.el9.alma.1
- (no CPE)range: < 1:2.06-77.el9.alma.1
- (no CPE)range: < 1:2.06-77.el9.alma.1
- (no CPE)range: < 1:2.06-77.el9.alma.1
- (no CPE)range: < 1:2.06-77.el9.alma.1
- (no CPE)range: < 1:2.06-77.el9.alma.1
- (no CPE)range: < 1:2.06-77.el9.alma.1
- (no CPE)range: < 1:2.06-77.el9.alma.1
- (no CPE)range: < 1:2.06-77.el9.alma.1
- (no CPE)range: < 1:2.06-77.el9.alma.1
- (no CPE)range: < 1:2.06-77.el9.alma.1
Patches
Vulnerability mechanics
References
9- access.redhat.com/security/cve/CVE-2024-1048nvdVendor Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingVendor Advisory
- www.openwall.com/lists/oss-security/2024/02/06/3nvdMailing ListThird Party Advisory
- www.openwall.com/lists/oss-security/2024/02/06/3nvd
- access.redhat.com/errata/RHSA-2024:2456nvd
- access.redhat.com/errata/RHSA-2024:3184nvd
- lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/XRZQCVZ3XOASVFT6XLO7F2ZXOLOHIJZQ/nvd
- lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/YSJAEGRR3XHMBBBKYOVMII4P34IXEYPE/nvd
- security.netapp.com/advisory/ntap-20240223-0007/nvd
News mentions
0No linked articles in our index yet.