CVE-2021-3655

low
New! CVE Severity Now Using CVSS v3

The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Description

A vulnerability was found in the Linux kernel in versions prior to v5.14-rc1. Missing size validations on inbound SCTP packets may allow the kernel to read uninitialized memory.

References

https://bugzilla.redhat.com/show_bug.cgi?id=1984024

https://lists.debian.org/debian-lts-announce/2021/10/msg00010.html

https://lists.debian.org/debian-lts-announce/2021/12/msg00012.html

Details

Source: MITRE

Published: 2021-08-05

Updated: 2022-01-01

Type: CWE-909

Risk Information

CVSS v2

Base Score: 2.1

Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Impact Score: 2.9

Exploitability Score: 3.9

Severity: LOW

CVSS v3

Base Score: 3.3

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

Impact Score: 1.4

Exploitability Score: 1.8

Severity: LOW

Tenable Plugins

View all (38 total)

IDNameProductFamilySeverity
156163Debian DLA-2843-1 : linux - LTS security updateNessusDebian Local Security Checks
high
155959SUSE SLES12 Security Update : kernel (SUSE-SU-2021:3972-1)NessusSuSE Local Security Checks
high
155930SUSE SLES15 Security Update : kernel (SUSE-SU-2021:3969-1)NessusSuSE Local Security Checks
high
155910SUSE SLES12 Security Update : kernel (SUSE-SU-2021:3929-1)NessusSuSE Local Security Checks
high
155902SUSE SLES12 Security Update : kernel (SUSE-SU-2021:3935-1)NessusSuSE Local Security Checks
high
155840SUSE SLES15 Security Update : kernel (SUSE-SU-2021:3876-1)NessusSuSE Local Security Checks
high
155824openSUSE 15 Security Update : kernel (openSUSE-SU-2021:3876-1)NessusSuSE Local Security Checks
high
155814SUSE SLES11 Security Update : kernel (SUSE-SU-2021:14849-1)NessusSuSE Local Security Checks
high
155752Ubuntu 20.04 LTS / 21.04 : Linux kernel vulnerabilities (USN-5161-1)NessusUbuntu Local Security Checks
high
155751Ubuntu 20.04 LTS / 21.10 : Linux kernel vulnerabilities (USN-5162-1)NessusUbuntu Local Security Checks
high
155749Ubuntu 18.04 LTS / 20.04 LTS : Linux kernel vulnerabilities (USN-5163-1)NessusUbuntu Local Security Checks
medium
155648SUSE SLED12 / SLES12 Security Update : kernel (SUSE-SU-2021:3748-1)NessusSuSE Local Security Checks
high
155643SUSE SLED15 / SLES15 Security Update : kernel (SUSE-SU-2021:3754-1)NessusSuSE Local Security Checks
high
155577SUSE SLES12 Security Update : kernel (SUSE-SU-2021:3723-1)NessusSuSE Local Security Checks
high
155467SUSE SLED15 / SLES15 Security Update : kernel (SUSE-SU-2021:3675-1)NessusSuSE Local Security Checks
high
155383openSUSE 15 Security Update : kernel (openSUSE-SU-2021:3675-1)NessusSuSE Local Security Checks
high
155358openSUSE 15 Security Update : kernel (openSUSE-SU-2021:1477-1)NessusSuSE Local Security Checks
high
155303SUSE SLES15 Security Update : kernel (SUSE-SU-2021:3658-1)NessusSuSE Local Security Checks
high
155302SUSE SLED15 / SLES15 Security Update : kernel (SUSE-SU-2021:3655-1)NessusSuSE Local Security Checks
high
155299openSUSE 15 Security Update : kernel (openSUSE-SU-2021:3655-1)NessusSuSE Local Security Checks
high
155261EulerOS 2.0 SP9 : kernel (EulerOS-SA-2021-2688)NessusHuawei Local Security Checks
high
155221Ubuntu 20.04 LTS : Linux kernel (OEM 5.10) vulnerabilities (USN-5139-1)NessusUbuntu Local Security Checks
high
155119EulerOS 2.0 SP9 : kernel (EulerOS-SA-2021-2713)NessusHuawei Local Security Checks
high
155009openSUSE 15 Security Update : kernel (openSUSE-SU-2021:3641-1)NessusSuSE Local Security Checks
high
155007SUSE SLES15 Security Update : kernel (SUSE-SU-2021:3640-1)NessusSuSE Local Security Checks
high
155006SUSE SLES15 Security Update : kernel (SUSE-SU-2021:3641-1)NessusSuSE Local Security Checks
high
155003SUSE SLES15 Security Update : kernel (SUSE-SU-2021:3642-1)NessusSuSE Local Security Checks
high
154975openSUSE 15 Security Update : kernel (openSUSE-SU-2021:1460-1)NessusSuSE Local Security Checks
high
154972Ubuntu 16.04 LTS / 18.04 LTS : Linux kernel vulnerabilities (USN-5136-1)NessusUbuntu Local Security Checks
high
154165Oracle Linux 7 : Unbreakable Enterprise kernel (ELSA-2021-9485)NessusOracle Linux Local Security Checks
high
154163Oracle Linux 7 : Unbreakable Enterprise kernel-container (ELSA-2021-9488)NessusOracle Linux Local Security Checks
high
154016OracleVM 3.4 : Unbreakable / etc (OVMSA-2021-0035)NessusOracleVM Local Security Checks
high
153860Amazon Linux AMI : kernel (ALAS-2021-1539)NessusAmazon Linux Local Security Checks
high
153582OracleVM 3.4 : Unbreakable / etc (OVMSA-2021-0031)NessusOracleVM Local Security Checks
critical
153567Oracle Linux 7 : Unbreakable Enterprise kernel-container (ELSA-2021-9458)NessusOracle Linux Local Security Checks
high
153559Oracle Linux 7 : Unbreakable Enterprise kernel (ELSA-2021-9460)NessusOracle Linux Local Security Checks
high
153557Oracle Linux 7 : Unbreakable Enterprise kernel (ELSA-2021-9459)NessusOracle Linux Local Security Checks
critical
152238Amazon Linux 2 : kernel (ALAS-2021-1696)NessusAmazon Linux Local Security Checks
low