Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-3600

Опубликовано: 08 янв. 2024
Источник: debian

Описание

It was discovered that the eBPF implementation in the Linux kernel did not properly track bounds information for 32 bit registers when performing div and mod operations. A local attacker could use this to possibly execute arbitrary code.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxfixed5.10.19-1package
linuxfixed4.19.208-1busterpackage

Примечания

  • https://git.kernel.org/linus/e88b2c6e5a4d9ce30d75391e4d950da74bb2bd90

  • https://www.openwall.com/lists/oss-security/2021/06/23/1

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 1 года назад

It was discovered that the eBPF implementation in the Linux kernel did not properly track bounds information for 32 bit registers when performing div and mod operations. A local attacker could use this to possibly execute arbitrary code.

CVSS3: 7.8
redhat
почти 4 года назад

It was discovered that the eBPF implementation in the Linux kernel did not properly track bounds information for 32 bit registers when performing div and mod operations. A local attacker could use this to possibly execute arbitrary code.

CVSS3: 7.8
nvd
больше 1 года назад

It was discovered that the eBPF implementation in the Linux kernel did not properly track bounds information for 32 bit registers when performing div and mod operations. A local attacker could use this to possibly execute arbitrary code.

CVSS3: 7.8
github
больше 1 года назад

It was discovered that the eBPF implementation in the Linux kernel did not properly track bounds information for 32 bit registers when performing div and mod operations. A local attacker could use this to possibly execute arbitrary code.

CVSS3: 7.8
fstec
больше 4 лет назад

Уязвимость подсистемы eBPF ядра операционной системы Linux, позволяющая нарушителю выполнить произвольный код