Grub2: romfs: integer overflow when handling symlinks may lead to heap based out-of-bounds write when reading dat (CVE-2025-0686) | HOL Guard CVE