Логотип exploitDog
bind:"GHSA-c8w8-4f3f-5v3j" OR bind:"CVE-2021-3640"
Консоль
Логотип exploitDog

exploitDog

bind:"GHSA-c8w8-4f3f-5v3j" OR bind:"CVE-2021-3640"

Количество 39

Количество 39

github логотип

GHSA-c8w8-4f3f-5v3j

больше 3 лет назад

A flaw use-after-free in function sco_sock_sendmsg() of the Linux kernel HCI subsystem was found in the way user calls ioct UFFDIO_REGISTER or other way triggers race condition of the call sco_conn_del() together with the call sco_sock_sendmsg() with the expected controllable faulting memory page. A privileged local user could use this flaw to crash the system or escalate their privileges on the system.

CVSS3: 7
EPSS: Низкий
ubuntu логотип

CVE-2021-3640

больше 3 лет назад

A flaw use-after-free in function sco_sock_sendmsg() of the Linux kernel HCI subsystem was found in the way user calls ioct UFFDIO_REGISTER or other way triggers race condition of the call sco_conn_del() together with the call sco_sock_sendmsg() with the expected controllable faulting memory page. A privileged local user could use this flaw to crash the system or escalate their privileges on the system.

CVSS3: 7
EPSS: Низкий
redhat логотип

CVE-2021-3640

почти 4 года назад

A flaw use-after-free in function sco_sock_sendmsg() of the Linux kernel HCI subsystem was found in the way user calls ioct UFFDIO_REGISTER or other way triggers race condition of the call sco_conn_del() together with the call sco_sock_sendmsg() with the expected controllable faulting memory page. A privileged local user could use this flaw to crash the system or escalate their privileges on the system.

CVSS3: 6.7
EPSS: Низкий
nvd логотип

CVE-2021-3640

больше 3 лет назад

A flaw use-after-free in function sco_sock_sendmsg() of the Linux kernel HCI subsystem was found in the way user calls ioct UFFDIO_REGISTER or other way triggers race condition of the call sco_conn_del() together with the call sco_sock_sendmsg() with the expected controllable faulting memory page. A privileged local user could use this flaw to crash the system or escalate their privileges on the system.

CVSS3: 7
EPSS: Низкий
msrc логотип

CVE-2021-3640

больше 3 лет назад

CVSS3: 7
EPSS: Низкий
debian логотип

CVE-2021-3640

больше 3 лет назад

A flaw use-after-free in function sco_sock_sendmsg() of the Linux kern ...

CVSS3: 7
EPSS: Низкий
fstec логотип

BDU:2021-03902

почти 4 года назад

Уязвимость функции sco_sock_sendmsg() подсистемы HCI ядра операционной системы Linux, позволяющая нарушителю вызвать аварийное завершение системы или повысить свои привилегии

CVSS3: 7
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:3361-1

больше 3 лет назад

Security update for the Linux Kernel (Live Patch 5 for SLE 15 SP3)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:3443-1

больше 3 лет назад

Security update for the Linux Kernel (Live Patch 11 for SLE 15 SP2)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:3374-1

больше 3 лет назад

Security update for the Linux Kernel (Live Patch 1 for SLE 15 SP3)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:3459-1

больше 3 лет назад

Security update for the Linux Kernel (Live Patch 38 for SLE 12 SP3)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:3440-1

больше 3 лет назад

Security update for the Linux Kernel (Live Patch 22 for SLE 15)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:3401-1

больше 3 лет назад

Security update for the Linux Kernel (Live Patch 23 for SLE 15)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:3371-1

больше 3 лет назад

Security update for the Linux Kernel (Live Patch 24 for SLE 15)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:3360-1

больше 3 лет назад

Security update for the Linux Kernel (Live Patch 0 for SLE 15 SP3)

EPSS: Низкий
oracle-oval логотип

ELSA-2022-9151

больше 3 лет назад

ELSA-2022-9151: Unbreakable Enterprise kernel-container security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2022-9150

больше 3 лет назад

ELSA-2022-9150: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2022-9148

больше 3 лет назад

ELSA-2022-9148: Unbreakable Enterprise kernel-container security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2022-9147

больше 3 лет назад

ELSA-2022-9147: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:3192-1

больше 3 лет назад

Security update for the Linux Kernel

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-c8w8-4f3f-5v3j

A flaw use-after-free in function sco_sock_sendmsg() of the Linux kernel HCI subsystem was found in the way user calls ioct UFFDIO_REGISTER or other way triggers race condition of the call sco_conn_del() together with the call sco_sock_sendmsg() with the expected controllable faulting memory page. A privileged local user could use this flaw to crash the system or escalate their privileges on the system.

CVSS3: 7
0%
Низкий
больше 3 лет назад
ubuntu логотип
CVE-2021-3640

A flaw use-after-free in function sco_sock_sendmsg() of the Linux kernel HCI subsystem was found in the way user calls ioct UFFDIO_REGISTER or other way triggers race condition of the call sco_conn_del() together with the call sco_sock_sendmsg() with the expected controllable faulting memory page. A privileged local user could use this flaw to crash the system or escalate their privileges on the system.

CVSS3: 7
0%
Низкий
больше 3 лет назад
redhat логотип
CVE-2021-3640

A flaw use-after-free in function sco_sock_sendmsg() of the Linux kernel HCI subsystem was found in the way user calls ioct UFFDIO_REGISTER or other way triggers race condition of the call sco_conn_del() together with the call sco_sock_sendmsg() with the expected controllable faulting memory page. A privileged local user could use this flaw to crash the system or escalate their privileges on the system.

CVSS3: 6.7
0%
Низкий
почти 4 года назад
nvd логотип
CVE-2021-3640

A flaw use-after-free in function sco_sock_sendmsg() of the Linux kernel HCI subsystem was found in the way user calls ioct UFFDIO_REGISTER or other way triggers race condition of the call sco_conn_del() together with the call sco_sock_sendmsg() with the expected controllable faulting memory page. A privileged local user could use this flaw to crash the system or escalate their privileges on the system.

CVSS3: 7
0%
Низкий
больше 3 лет назад
msrc логотип
CVSS3: 7
0%
Низкий
больше 3 лет назад
debian логотип
CVE-2021-3640

A flaw use-after-free in function sco_sock_sendmsg() of the Linux kern ...

CVSS3: 7
0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2021-03902

Уязвимость функции sco_sock_sendmsg() подсистемы HCI ядра операционной системы Linux, позволяющая нарушителю вызвать аварийное завершение системы или повысить свои привилегии

CVSS3: 7
0%
Низкий
почти 4 года назад
suse-cvrf логотип
SUSE-SU-2021:3361-1

Security update for the Linux Kernel (Live Patch 5 for SLE 15 SP3)

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2021:3443-1

Security update for the Linux Kernel (Live Patch 11 for SLE 15 SP2)

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2021:3374-1

Security update for the Linux Kernel (Live Patch 1 for SLE 15 SP3)

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2021:3459-1

Security update for the Linux Kernel (Live Patch 38 for SLE 12 SP3)

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2021:3440-1

Security update for the Linux Kernel (Live Patch 22 for SLE 15)

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2021:3401-1

Security update for the Linux Kernel (Live Patch 23 for SLE 15)

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2021:3371-1

Security update for the Linux Kernel (Live Patch 24 for SLE 15)

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2021:3360-1

Security update for the Linux Kernel (Live Patch 0 for SLE 15 SP3)

больше 3 лет назад
oracle-oval логотип
ELSA-2022-9151

ELSA-2022-9151: Unbreakable Enterprise kernel-container security update (IMPORTANT)

больше 3 лет назад
oracle-oval логотип
ELSA-2022-9150

ELSA-2022-9150: Unbreakable Enterprise kernel security update (IMPORTANT)

больше 3 лет назад
oracle-oval логотип
ELSA-2022-9148

ELSA-2022-9148: Unbreakable Enterprise kernel-container security update (IMPORTANT)

больше 3 лет назад
oracle-oval логотип
ELSA-2022-9147

ELSA-2022-9147: Unbreakable Enterprise kernel security update (IMPORTANT)

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2021:3192-1

Security update for the Linux Kernel

больше 3 лет назад

Уязвимостей на страницу