Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-3600

Опубликовано: 08 янв. 2024
Источник: debian

Описание

It was discovered that the eBPF implementation in the Linux kernel did not properly track bounds information for 32 bit registers when performing div and mod operations. A local attacker could use this to possibly execute arbitrary code.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxfixed5.10.19-1package
linuxfixed4.19.208-1busterpackage

Примечания

  • https://git.kernel.org/linus/e88b2c6e5a4d9ce30d75391e4d950da74bb2bd90

  • https://www.openwall.com/lists/oss-security/2021/06/23/1

Связанные уязвимости

CVSS3: 7.8
ubuntu
почти 2 года назад

It was discovered that the eBPF implementation in the Linux kernel did not properly track bounds information for 32 bit registers when performing div and mod operations. A local attacker could use this to possibly execute arbitrary code.

CVSS3: 7.8
redhat
больше 4 лет назад

It was discovered that the eBPF implementation in the Linux kernel did not properly track bounds information for 32 bit registers when performing div and mod operations. A local attacker could use this to possibly execute arbitrary code.

CVSS3: 7.8
nvd
почти 2 года назад

It was discovered that the eBPF implementation in the Linux kernel did not properly track bounds information for 32 bit registers when performing div and mod operations. A local attacker could use this to possibly execute arbitrary code.

CVSS3: 7.8
github
почти 2 года назад

It was discovered that the eBPF implementation in the Linux kernel did not properly track bounds information for 32 bit registers when performing div and mod operations. A local attacker could use this to possibly execute arbitrary code.

CVSS3: 7.8
fstec
почти 5 лет назад

Уязвимость подсистемы eBPF ядра операционной системы Linux, позволяющая нарушителю выполнить произвольный код