ELSA-2025-2867

ELSA-2025-2867 - grub2 security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2025-03-17

Description


[2.06-94.0.1]
- Rework the scripts to cover both in-place upgrade and update scenarios [Orabug: 36768566]
- Restore correct order of processing config files [Orabug: 36758359]
- Support setting custom kernels as default kernels [Orabug: 36043978]
- Bump SBAT metadata for grub to 3 [Orabug: 34872719]
- Fix CVE-2022-3775 [Orabug: 34871953]
- Enable signing for aarch64 EFI
- Fix signing certificate names
- Enable back btrfs grub module for EFI pre-built image [Orabug: 34360986]
- Replaced bugzilla.oracle.com references [Orabug: 34202300]
- Update provided certificate version to 202204 [JIRA: OLDIS-16371]
- Various coverity fixes [JIRA: OLDIS-16371]
- bump SBAT generation
- Update bug url [Orabug: 34202300]
- Revert provided certificate version back to 202102 [JIRA: OLDIS-16371]
- Update signing certificate [JIRA: OLDIS-16371]
- fix SBAT data [JIRA: OLDIS-16371]
- Update requires [JIRA: OLDIS-16371]
- Rebuild for SecureBoot signatures [Orabug: 33801813]
- Do not add shim and grub certificate deps for aarch64 packages [Orabug: 32670033]
- Update Oracle SBAT data [Orabug: 32670033]
- Use new signing certificate [Orabug: 32670033]
- honor /etc/sysconfig/kernel DEFAULTKERNEL setting for BLS [Orabug: 30643497]
- set EFIDIR as redhat for additional grub2 tools [Orabug: 29875597]
- Update upstream references [Orabug: 26388226]
- Insert Unbreakable Enterprise Kernel text into BLS config file [Orabug: 29417955]
- Put 'with' in menuentry instead of 'using' [Orabug: 18504756]
- Use different titles for UEK and RHCK kernels [Orabug: 18504756]

[2.06-94]
- CVE fixes
- Resolves: CVE-2025-0624
- Resolves: #RHEL-79842


Related CVEs


CVE-2025-0624

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) grub2-2.06-94.0.1.el9_5.src.rpm13b019c671eb96429f94d5824cab63a0-ol9_aarch64_baseos_latest
grub2-2.06-94.0.1.el9_5.src.rpm13b019c671eb96429f94d5824cab63a0-ol9_aarch64_u5_baseos_patch
grub2-common-2.06-94.0.1.el9_5.noarch.rpmcebec2b95d29fe835b9d23f4aa76de80-ol9_aarch64_baseos_latest
grub2-common-2.06-94.0.1.el9_5.noarch.rpmcebec2b95d29fe835b9d23f4aa76de80-ol9_aarch64_u5_baseos_patch
grub2-efi-aa64-2.06-94.0.1.el9_5.aarch64.rpm9f17303f0c91b010f1eae406a2f33f9a-ol9_aarch64_baseos_latest
grub2-efi-aa64-2.06-94.0.1.el9_5.aarch64.rpm9f17303f0c91b010f1eae406a2f33f9a-ol9_aarch64_u5_baseos_patch
grub2-efi-aa64-cdboot-2.06-94.0.1.el9_5.aarch64.rpm2306a8530bd3e77c219fe511c8f9a68a-ol9_aarch64_baseos_latest
grub2-efi-aa64-cdboot-2.06-94.0.1.el9_5.aarch64.rpm2306a8530bd3e77c219fe511c8f9a68a-ol9_aarch64_u5_baseos_patch
grub2-efi-aa64-modules-2.06-94.0.1.el9_5.noarch.rpm13a78b7f684eba145203b73aa2f192a9-ol9_aarch64_baseos_latest
grub2-efi-aa64-modules-2.06-94.0.1.el9_5.noarch.rpm13a78b7f684eba145203b73aa2f192a9-ol9_aarch64_u5_baseos_patch
grub2-efi-x64-modules-2.06-94.0.1.el9_5.noarch.rpmb419251379531e7918eebccd8cc2c95e-ol9_aarch64_baseos_latest
grub2-efi-x64-modules-2.06-94.0.1.el9_5.noarch.rpmb419251379531e7918eebccd8cc2c95e-ol9_aarch64_u5_baseos_patch
grub2-tools-2.06-94.0.1.el9_5.aarch64.rpm24f61a587566b224a5e656b7c104ca42-ol9_aarch64_baseos_latest
grub2-tools-2.06-94.0.1.el9_5.aarch64.rpm24f61a587566b224a5e656b7c104ca42-ol9_aarch64_u5_baseos_patch
grub2-tools-extra-2.06-94.0.1.el9_5.aarch64.rpm751f15120f55a2f46a84d9839cc2bc50-ol9_aarch64_baseos_latest
grub2-tools-extra-2.06-94.0.1.el9_5.aarch64.rpm751f15120f55a2f46a84d9839cc2bc50-ol9_aarch64_u5_baseos_patch
grub2-tools-minimal-2.06-94.0.1.el9_5.aarch64.rpme2d0082e5dd693f3283bf9433a82d953-ol9_aarch64_baseos_latest
grub2-tools-minimal-2.06-94.0.1.el9_5.aarch64.rpme2d0082e5dd693f3283bf9433a82d953-ol9_aarch64_u5_baseos_patch
Oracle Linux 9 (x86_64) grub2-2.06-94.0.1.el9_5.src.rpm13b019c671eb96429f94d5824cab63a0-ol9_x86_64_baseos_latest
grub2-2.06-94.0.1.el9_5.src.rpm13b019c671eb96429f94d5824cab63a0-ol9_x86_64_u5_baseos_patch
grub2-common-2.06-94.0.1.el9_5.noarch.rpmcebec2b95d29fe835b9d23f4aa76de80-ol9_x86_64_baseos_latest
grub2-common-2.06-94.0.1.el9_5.noarch.rpmcebec2b95d29fe835b9d23f4aa76de80-ol9_x86_64_u5_baseos_patch
grub2-efi-aa64-modules-2.06-94.0.1.el9_5.noarch.rpm13a78b7f684eba145203b73aa2f192a9-ol9_x86_64_baseos_latest
grub2-efi-aa64-modules-2.06-94.0.1.el9_5.noarch.rpm13a78b7f684eba145203b73aa2f192a9-ol9_x86_64_u5_baseos_patch
grub2-efi-x64-2.06-94.0.1.el9_5.x86_64.rpm5b3b2e7926072ad7cf40a8fc2fbb5182-ol9_x86_64_baseos_latest
grub2-efi-x64-2.06-94.0.1.el9_5.x86_64.rpm5b3b2e7926072ad7cf40a8fc2fbb5182-ol9_x86_64_u5_baseos_patch
grub2-efi-x64-cdboot-2.06-94.0.1.el9_5.x86_64.rpm9e0c446300f740924928c1cab3d2e493-ol9_x86_64_baseos_latest
grub2-efi-x64-cdboot-2.06-94.0.1.el9_5.x86_64.rpm9e0c446300f740924928c1cab3d2e493-ol9_x86_64_u5_baseos_patch
grub2-efi-x64-modules-2.06-94.0.1.el9_5.noarch.rpmb419251379531e7918eebccd8cc2c95e-ol9_x86_64_baseos_latest
grub2-efi-x64-modules-2.06-94.0.1.el9_5.noarch.rpmb419251379531e7918eebccd8cc2c95e-ol9_x86_64_u5_baseos_patch
grub2-pc-2.06-94.0.1.el9_5.x86_64.rpmd49796e6d37d2cc01bc3ebf7838d4b95-ol9_x86_64_baseos_latest
grub2-pc-2.06-94.0.1.el9_5.x86_64.rpmd49796e6d37d2cc01bc3ebf7838d4b95-ol9_x86_64_u5_baseos_patch
grub2-pc-modules-2.06-94.0.1.el9_5.noarch.rpmba1d01990cb6e78987e81adc01e41f92-ol9_x86_64_baseos_latest
grub2-pc-modules-2.06-94.0.1.el9_5.noarch.rpmba1d01990cb6e78987e81adc01e41f92-ol9_x86_64_u5_baseos_patch
grub2-tools-2.06-94.0.1.el9_5.x86_64.rpm9776b080a6369c38832f7a3c69c1fec1-ol9_x86_64_baseos_latest
grub2-tools-2.06-94.0.1.el9_5.x86_64.rpm9776b080a6369c38832f7a3c69c1fec1-ol9_x86_64_u5_baseos_patch
grub2-tools-efi-2.06-94.0.1.el9_5.x86_64.rpmacbff62f036a4700e702baed285c6d18-ol9_x86_64_baseos_latest
grub2-tools-efi-2.06-94.0.1.el9_5.x86_64.rpmacbff62f036a4700e702baed285c6d18-ol9_x86_64_u5_baseos_patch
grub2-tools-extra-2.06-94.0.1.el9_5.x86_64.rpme58cf7f6965f46a33255bbd77128dea5-ol9_x86_64_baseos_latest
grub2-tools-extra-2.06-94.0.1.el9_5.x86_64.rpme58cf7f6965f46a33255bbd77128dea5-ol9_x86_64_u5_baseos_patch
grub2-tools-minimal-2.06-94.0.1.el9_5.x86_64.rpme3c27c069abb4fe102fd9bcda6a451a3-ol9_x86_64_baseos_latest
grub2-tools-minimal-2.06-94.0.1.el9_5.x86_64.rpme3c27c069abb4fe102fd9bcda6a451a3-ol9_x86_64_u5_baseos_patch



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete