CVE-2021-43267

critical
New! CVE Severity Now Using CVSS v3

The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Description

An issue was discovered in net/tipc/crypto.c in the Linux kernel before 5.14.16. The Transparent Inter-Process Communication (TIPC) functionality allows remote attackers to exploit insufficient validation of user-supplied sizes for the MSG_CRYPTO message type.

References

https://github.com/torvalds/linux/commit/fa40d9734a57bcbfa79a280189799f76c88f7bb0

https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.14.16

https://lists.fedoraproject.org/archives/list/[email protected]/message/RDDEW4APTYKJK365HC2JZIVXYUV7ZRN7/

https://lists.fedoraproject.org/archives/list/[email protected]/message/CVWL7HZV5T5OEKJPO2D67RMFMKBBXGGB/

https://security.netapp.com/advisory/ntap-20211125-0002/

Details

Source: MITRE

Published: 2021-11-02

Updated: 2021-11-25

Type: CWE-20

Risk Information

CVSS v2

Base Score: 7.5

Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Impact Score: 6.4

Exploitability Score: 10

Severity: HIGH

CVSS v3

Base Score: 9.8

Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Impact Score: 5.9

Exploitability Score: 3.9

Severity: CRITICAL

Vulnerable Software

Configuration 1

OR

cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

Tenable Plugins

View all (11 total)

IDNameProductFamilySeverity
155654RHEL 8 : Red Hat Virtualization Host security and bug fix update [ovirt-4.4.9] 0-day (Important) (RHSA-2021:4750)NessusRed Hat Local Security Checks
critical
155588CentOS 8 : kernel-rt (CESA-2021:4646)NessusCentOS Local Security Checks
critical
155566Oracle Linux 8 : kernel (ELSA-2021-4647)NessusOracle Linux Local Security Checks
critical
155562CentOS 8 : kernel (CESA-2021:4647)NessusCentOS Local Security Checks
critical
155368RHEL 8 : kernel-rt (RHSA-2021:4646)NessusRed Hat Local Security Checks
critical
155367RHEL 8 : kernel (RHSA-2021:4650)NessusRed Hat Local Security Checks
critical
155366RHEL 8 : kernel-rt (RHSA-2021:4648)NessusRed Hat Local Security Checks
critical
155364RHEL 8 : kpatch-patch (RHSA-2021:4645)NessusRed Hat Local Security Checks
critical
155361RHEL 8 : kpatch-patch (RHSA-2021:4644)NessusRed Hat Local Security Checks
critical
155360RHEL 8 : kernel (RHSA-2021:4647)NessusRed Hat Local Security Checks
critical
155322Photon OS 4.0: Linux PHSA-2021-4.0-0127NessusPhotonOS Local Security Checks
critical