CVE-2021-3753
PoC —CVSS 3.1
4.7 medium
EPSS
<1%p30
Published
()
Modified
Description
A race problem was seen in the vt_k_ioctl in drivers/tty/vt/vt_ioctl.c in the Linux kernel, which may cause an out of bounds read in vt as the write access to vc_mode is not protected by lock-in vt_ioctl (KDSETMDE). The highest threat from this vulnerability is to data confidentiality.
- Vendors
- linuxredhatnetapp
- Products
- linux kernel, enterprise linux, active iq unified manager, element software, hci management node, solidfire, bootstrap os, h300s firmware, h500s firmware, h700s firmware, h410s firmware, h410c firmware
- Weakness
- CWE-125, CWE-362
- Vector
- CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.