CVE-2021-23134
גבוהה 7.8
תיאור (מקור, אנגלית)
Use After Free vulnerability in nfc sockets in the Linux Kernel before 5.12.4 allows local attackers to elevate their privileges. In typical configurations, the issue can only be triggered by a privileged local user with the CAP_NET_RAW capability.
מדדים
- CVSS 3.1
-
7.8 (HIGH)
מקור הציון: CNA
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H - CWE
- CWE-416
מוצרים מושפעים
netapp: cloud backup; netapp: h300s firmware; netapp: h300s; netapp: h500s firmware; netapp: h500s; netapp: h700s firmware; netapp: h700s; netapp: h410s firmware; netapp: h410s; netapp: h410c firmware; netapp: h410c; netapp: solidfire baseboard management controller firmware; netapp: solidfire baseboard management controller; linux: linux kernel; fedoraproject: fedora
קישורים
- https://git.kernel.org/pub/scm/linux/kernel/git/netdev/net.git/commit/?id=c617… Mailing ListPatchVendor Advisory
- https://git.kernel.org/pub/scm/linux/kernel/git/netdev/net.git/commit/?id=c617… Mailing ListPatchVendor Advisory
- https://www.openwall.com/lists/oss-security/2021/05/11/4 Mailing ListPatchThird Party Advisory
- https://www.openwall.com/lists/oss-security/2021/05/11/4 Mailing ListPatchThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2021/06/msg00019.html Mailing ListThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2021/06/msg00020.html Mailing ListThird Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedorap… Third Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedorap… Third Party Advisory
- https://security.netapp.com/advisory/ntap-20210625-0007/ Third Party Advisory
- https://lists.debian.org/debian-lts-announce/2021/06/msg00019.html Mailing ListThird Party Advisory