Language:
https://bugzilla.opensuse.org/show_bug.cgi?id=1175970
https://bugzilla.opensuse.org/show_bug.cgi?id=1176711
https://bugzilla.opensuse.org/show_bug.cgi?id=1177883
https://bugzilla.opensuse.org/show_bug.cgi?id=1179264
https://bugzilla.opensuse.org/show_bug.cgi?id=1179265
https://bugzilla.opensuse.org/show_bug.cgi?id=1182057
https://bugzilla.opensuse.org/show_bug.cgi?id=1182262
Severity: High
ID: 148045
File Name: openSUSE-2021-462.nasl
Version: 1.3
Type: local
Agent: unix
Family: SuSE Local Security Checks
Published: 3/24/2021
Updated: 1/8/2024
Supported Sensors: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus Agent, Continuous Assessment, Nessus
Risk Factor: High
Score: 7.3
Risk Factor: High
Base Score: 7.2
Temporal Score: 5.6
Vector: CVSS2#AV:L/AC:L/Au:N/C:C/I:C/A:C
CVSS Score Source: CVE-2021-20233
Risk Factor: High
Base Score: 8.2
Temporal Score: 7.4
Vector: CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Temporal Vector: CVSS:3.0/E:P/RL:O/RC:C
CPE: p-cpe:/a:novell:opensuse:grub2-i386-efi-debug, p-cpe:/a:novell:opensuse:grub2-snapper-plugin, p-cpe:/a:novell:opensuse:grub2-x86_64-efi, p-cpe:/a:novell:opensuse:grub2-x86_64-xen, p-cpe:/a:novell:opensuse:grub2-branding-upstream, p-cpe:/a:novell:opensuse:grub2-i386-efi, p-cpe:/a:novell:opensuse:grub2-debugsource, p-cpe:/a:novell:opensuse:grub2-i386-pc-debug, p-cpe:/a:novell:opensuse:grub2-x86_64-efi-debug, cpe:/o:novell:opensuse:15.2, p-cpe:/a:novell:opensuse:grub2-systemd-sleep-plugin, p-cpe:/a:novell:opensuse:grub2-i386-xen, p-cpe:/a:novell:opensuse:grub2-debuginfo, p-cpe:/a:novell:opensuse:grub2, p-cpe:/a:novell:opensuse:grub2-i386-pc
Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 3/22/2021
Vulnerability Publication Date: 3/3/2021
CVE: CVE-2020-14372, CVE-2020-25632, CVE-2020-25647, CVE-2020-27749, CVE-2020-27779, CVE-2021-20225, CVE-2021-20233