Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-45868

Опубликовано: 18 мар. 2022
Источник: debian
EPSS Низкий

Описание

In the Linux kernel before 5.15.3, fs/quota/quota_tree.c does not validate the block number in the quota tree (on disk). This can, for example, lead to a kernel/locking/rwsem.c use-after-free if there is a corrupted quota file.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxfixed5.15.3-1package
linuxfixed5.10.84-1bullseyepackage
linuxfixed4.19.232-1busterpackage
linuxfixed4.9.303-1stretchpackage

Примечания

  • https://git.kernel.org/linus/9bf3d20331295b1ecb81f4ed9ef358c51699a050

  • https://bugzilla.kernel.org/show_bug.cgi?id=214655

  • https://www.openwall.com/lists/oss-security/2022/03/17/1

EPSS

Процентиль: 47%
0.00242
Низкий

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 3 лет назад

In the Linux kernel before 5.15.3, fs/quota/quota_tree.c does not validate the block number in the quota tree (on disk). This can, for example, lead to a kernel/locking/rwsem.c use-after-free if there is a corrupted quota file.

CVSS3: 5.1
redhat
больше 3 лет назад

In the Linux kernel before 5.15.3, fs/quota/quota_tree.c does not validate the block number in the quota tree (on disk). This can, for example, lead to a kernel/locking/rwsem.c use-after-free if there is a corrupted quota file.

CVSS3: 5.5
nvd
больше 3 лет назад

In the Linux kernel before 5.15.3, fs/quota/quota_tree.c does not validate the block number in the quota tree (on disk). This can, for example, lead to a kernel/locking/rwsem.c use-after-free if there is a corrupted quota file.

CVSS3: 5.5
msrc
больше 3 лет назад

Описание отсутствует

CVSS3: 5.5
github
больше 3 лет назад

In the Linux kernel before 5.15.3, fs/quota/quota_tree.c does not validate the block number in the quota tree (on disk). This can, for example, lead to a kernel/locking/rwsem.c use-after-free if there is a corrupted quota file.

EPSS

Процентиль: 47%
0.00242
Низкий