VDB
GCVE-110-MAGEIA-2014-358
GCVE-110-MAGEIA-2014-358
Advisory Published
An integer overflow in liblzo before 2.07 allows attackers to cause a
denial of service or possibly code execution in applications using
performing LZO decompression on a compressed payload from the attacker
(CVE-2014-4607).
The grub2 package is built with a bundled copy of minilzo, which is a
part of liblzo containing the vulnerable code.
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Mageia | grub2 | 0 (affected), 2.00-46.3.mga3 (unaffected) | — |
| Mageia | grub2 | 0 (affected), 2.00-59.1.mga4 (unaffected) | — |
Browse GCVE Records
74,108 records in the GCVE database · Updated July 20, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.