CVE-2021-3543
—CVSS 3.1
6.7 medium
EPSS
<1%p23
Published
()
Modified
Description
A flaw null pointer dereference in the Nitro Enclaves kernel driver was found in the way that Enclaves VMs forces closures on the enclave file descriptor. A local user of a host machine could use this flaw to crash the system or escalate their privileges on the system.
- Vendors
- nitro enclaves projectredhatfedoraproject
- Products
- nitro enclaves, enterprise linux, fedora
- Weakness
- CWE-416, CWE-476
- Vector
- CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.