THREATOPS
THREAT OPSThreat News › [NVD] CVE-2025-61662 (HIGH 7.8) — A Use-After-Free vulnerability has been discovered in GRUB's gettext module. This flaw stems from a programming error where the gettext command remains registered in memory after its module is unloaded. An attacker can exploit this condition by invoking the orphaned command, caus

[NVD] CVE-2025-61662 (HIGH 7.8) — A Use-After-Free vulnerability has been discovered in GRUB's gettext module. This flaw stems from a programming error where the gettext command remains registered in memory after its module is unloaded. An attacker can exploit this condition by invoking the orphaned command, caus

lownvdPublished 2025-11-18

CVE-2025-61662 CVSS: 7.8 HIGH Published: 2025-11-18T19:15:50.203

A Use-After-Free vulnerability has been discovered in GRUB's gettext module. This flaw stems from a programming error where the gettext command remains registered in memory after its module is unloaded. An attacker can exploit this condition by invoking the orphaned command, causing the application to access a memory location that i

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2025-61662