ZeroHour

CVE-2021-41073

CVSS 3.1
7.8 high
EPSS
2%p76
Published
()
Modified
Description

loop_rw_iter in fs/io_uring.c in the Linux kernel 5.10 through 5.14.6 allows local users to gain privileges by using IORING_OP_PROVIDE_BUFFERS to trigger a free of a kernel buffer, as demonstrated by using /proc/ /maps for exploitation.

Vendors
linuxdebianfedoraprojectnetapp
Products
linux kernel, debian linux, fedora, cloud backup, solidfire baseboard management controller, h410c firmware, h300s firmware, h500s firmware, h700s firmware, h300e firmware, h500e firmware, h700e firmware
Weakness
CWE-763
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.