CVE-2021-4090 - CERT CVE
ID CVE-2021-4090
Sažetak An out-of-bounds (OOB) memory write flaw was found in the NFSD in the Linux kernel. Missing sanity may lead to a write beyond bmval[bmlen-1] in nfsd4_decode_bitmap4 in fs/nfsd/nfs4xdr.c. In this flaw, a local attacker with user privilege may gain access to out-of-bounds memory, leading to a system integrity and confidentiality threat.
Reference
CVSS
Base: 6.6
Impact: 9.2
Exploitability:3.9
Pristup
VektorSloženostAutentikacija
LOCAL LOW NONE
Impact
PovjerljivostCjelovitostDostupnost
COMPLETE COMPLETE NONE
CVSS vektor AV:L/AC:L/Au:N/C:C/I:C/A:N
Zadnje važnije ažuriranje 07-11-2023 - 03:40
Objavljeno 18-02-2022 - 18:15