summaryrefslogtreecommitdiffstats
path: root/retired/CVE-2021-32606
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2021-06-07 22:44:23 +0200
committerSalvatore Bonaccorso <carnil@debian.org>2021-06-07 22:44:23 +0200
commitf02934ebe558d3c197c70ae79e83afecb27373b5 (patch)
tree30bf930185533151c00597102b87639b5723334e /retired/CVE-2021-32606
parent30576def76dc7c0306b5af9a204a79132f63255a (diff)
Retire some CVEs
Diffstat (limited to 'retired/CVE-2021-32606')
-rw-r--r--retired/CVE-2021-3260615
1 files changed, 15 insertions, 0 deletions
diff --git a/retired/CVE-2021-32606 b/retired/CVE-2021-32606
new file mode 100644
index 00000000..a968e92b
--- /dev/null
+++ b/retired/CVE-2021-32606
@@ -0,0 +1,15 @@
+Description: net/can/isotp: race condition leads to local privilege escalation
+References:
+ https://www.openwall.com/lists/oss-security/2021/05/11/16
+ https://git.kernel.org/pub/scm/linux/kernel/git/netdev/net.git/commit/?id=2b17c400aeb44daf041627722581ade527bb3c1d
+Notes:
+ carnil> Introduced by 921ca574cd38 ("can: isotp: add SF_BROADCAST
+ carnil> support for functional addressing") in 5.11-rc1.
+Bugs:
+upstream: released (5.13-rc4) [2b17c400aeb44daf041627722581ade527bb3c1d]
+5.10-upstream-stable: N/A "Vulnerable code introduced later"
+4.19-upstream-stable: N/A "Vulnerable code introduced later"
+4.9-upstream-stable: N/A "Vulnerable code introduced later"
+sid: N/A "Vulnerable code introduced later"
+4.19-buster-security: N/A "Vulnerable code introduced later"
+4.9-stretch-security: N/A "Vulnerable code introduced later"

© 2014-2024 Faster IT GmbH | imprint | privacy policy