logo

“Boothole” Bootloader Flaw Breaks Security on Most Linux, Windows Devices

ID: aa18725a-dccd-517b-8f09-7c263a546ec0

STIX ID: report--aa18725a-dccd-517b-8f09-7c263a546ec0

Feed Name: Security Ledger

Threat Score
75/100

Date Published: 2020-07-29

Date Updated: 2026-04-26

Author: Jack Monahan

...
...

Boothole is a critical GRUB2 buffer-overflow vulnerability that can be exploited to run arbitrary code during boot even on systems using Secure Boot, potentially allowing persistent, stealthy bootkits or malicious bootloaders across a vast range of Linux distributions and some Windows devices; remediation requires coordinated GRUB2 patches, signed shim updates, revocation files, and extensive testing, creating a prolonged window of risk for affected organizations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.