CVE-2021-3501 - CERT CVE
ID CVE-2021-3501
Sažetak A flaw was found in the Linux kernel in versions before 5.12. The value of internal.ndata, in the KVM API, is mapped to an array index, which can be updated by a user process at anytime which could lead to an out-of-bounds write. The highest threat from this vulnerability is to data integrity and system availability.
Reference
CVSS
Base: 3.6
Impact: 4.9
Exploitability:3.9
Pristup
VektorSloženostAutentikacija
LOCAL LOW NONE
Impact
PovjerljivostCjelovitostDostupnost
NONE PARTIAL PARTIAL
CVSS vektor AV:L/AC:L/Au:N/C:N/I:P/A:P
Zadnje važnije ažuriranje 13-05-2022 - 20:52
Objavljeno 06-05-2021 - 13:15