File _patchinfo of Package patchinfo.30710
<patchinfo incident="30710">
<issue tracker="cve" id="2023-4692"/>
<issue tracker="cve" id="2023-4693"/>
<issue tracker="bnc" id="1201300">core.elf shows different behaviour for network install of SLE15 SP4 on power</issue>
<issue tracker="bnc" id="1215935">VUL-0: CVE-2023-4692: grub2: out-of-bounds write at fs/ntfs.c may lead to unsigned code execution</issue>
<issue tracker="bnc" id="1215936">VUL-0: CVE-2023-4693: grub2: out-of-bounds read at fs/ntfs.c</issue>
<packager>michael-chang</packager>
<rating>important</rating>
<category>security</category>
<summary>Security update for grub2</summary>
<description>This update for grub2 fixes the following issues:
Security fixes:
- CVE-2023-4692: Fixed an out-of-bounds write at fs/ntfs.c which may lead to unsigned code execution. (bsc#1215935)
- CVE-2023-4693: Fixed an out-of-bounds read at fs/ntfs.c which may lead to leak sensitive information. (bsc#1215936)
Other fixes:
- Fix a boot delay issue in PowerPC PXE boot (bsc#1201300)
</description>
</patchinfo>