THREATOPS
THREAT OPSThreat News › [NVD] CVE-2025-54770 (MEDIUM 4.9) — A vulnerability has been identified in the GRUB2 bootloader's network module that poses an immediate Denial of Service (DoS) risk. This flaw is a Use-after-Free issue, caused because the net_set_vlan command is not properly unregistered when the network module is unloaded from me

[NVD] CVE-2025-54770 (MEDIUM 4.9) — A vulnerability has been identified in the GRUB2 bootloader's network module that poses an immediate Denial of Service (DoS) risk. This flaw is a Use-after-Free issue, caused because the net_set_vlan command is not properly unregistered when the network module is unloaded from me

lownvdPublished 2025-11-18

CVE-2025-54770 CVSS: 4.9 MEDIUM Published: 2025-11-18T19:15:49.200

A vulnerability has been identified in the GRUB2 bootloader's network module that poses an immediate Denial of Service (DoS) risk. This flaw is a Use-after-Free issue, caused because the net_set_vlan command is not properly unregistered when the network module is unloaded from memory. An attacker who can execute this command can f

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2025-54770