ID

VAR-202105-0904


CVE

CVE-2021-3501


TITLE

Linux Kernel  Out-of-bounds Vulnerability in Microsoft

Trust: 0.8

sources: JVNDB: JVNDB-2021-006584

DESCRIPTION

A flaw was found in the Linux kernel in versions before 5.12. The value of internal.ndata, in the KVM API, is mapped to an array index, which can be updated by a user process at anytime which could lead to an out-of-bounds write. The highest threat from this vulnerability is to data integrity and system availability. Linux Kernel Is vulnerable to an out-of-bounds write.Information is tampered with and denial of service (DoS) It may be put into a state. KVM is one of the kernel-based virtual machines. This vulnerability could result in an out-of-bounds write. Description: Red Hat Advanced Cluster Management for Kubernetes 2.2.4 images Red Hat Advanced Cluster Management for Kubernetes provides the capabilities to address common challenges that administrators and site reliability engineers face as they work across a range of public and private cloud environments. Clusters and applications are all visible and managed from a single console—with security policy built in. See the following Release Notes documentation, which will be updated shortly for this release, for additional details about this release: https://access.redhat.com/documentation/en-us/red_hat_advanced_cluster_mana gement_for_kubernetes/2.2/html/release_notes/ Security fixes: * redisgraph-tls: redis: integer overflow when configurable limit for maximum supported bulk input size is too big on 32-bit platforms (CVE-2021-21309) * console-header-container: nodejs-netmask: improper input validation of octal input data (CVE-2021-28092) * console-container: nodejs-is-svg: ReDoS via malicious string (CVE-2021-28918) Bug fixes: * RHACM 2.2.4 images (BZ# 1957254) * Enabling observability for OpenShift Container Storage with RHACM 2.2 on OCP 4.7 (BZ#1950832) * ACM Operator should support using the default route TLS (BZ# 1955270) * The scrolling bar for search filter does not work properly (BZ# 1956852) * Limits on Length of MultiClusterObservability Resource Name (BZ# 1959426) * The proxy setup in install-config.yaml is not worked when IPI installing with RHACM (BZ# 1960181) * Unable to make SSH connection to a Bitbucket server (BZ# 1966513) * Observability Thanos store shard crashing - cannot unmarshall DNS message (BZ# 1967890) 3. Solution: Before applying this update, make sure all previously released errata relevant to your system have been applied. Bugs fixed (https://bugzilla.redhat.com/): 1932634 - CVE-2021-21309 redis: integer overflow when configurable limit for maximum supported bulk input size is too big on 32-bit platforms 1939103 - CVE-2021-28092 nodejs-is-svg: ReDoS via malicious string 1944827 - CVE-2021-28918 nodejs-netmask: improper input validation of octal input data 1950832 - Enabling observability for OpenShift Container Storage with RHACM 2.2 on OCP 4.7 1952150 - [DDF] It would be great to see all the options available for the bucket configuration and which attributes are mandatory 1954506 - [DDF] Table does not contain data about 20 clusters. Now it's difficult to estimate CPU usage with larger clusters 1954535 - Reinstall Submariner - No endpoints found on one cluster 1955270 - ACM Operator should support using the default route TLS 1956852 - The scrolling bar for search filter does not work properly 1957254 - RHACM 2.2.4 images 1959426 - Limits on Length of MultiClusterObservability Resource Name 1960181 - The proxy setup in install-config.yaml is not worked when IPI installing with RHACM. 1963128 - [DDF] Please rename this to "Amazon Elastic Kubernetes Service" 1966513 - Unable to make SSH connection to a Bitbucket server 1967357 - [DDF] When I clicked on this yaml, I get a HTTP 404 error. 1967890 - Observability Thanos store shard crashing - cannot unmarshal DNS message 5. Description: Red Hat OpenShift Container Platform is Red Hat's cloud computing Kubernetes application platform solution designed for on-premise or private cloud deployments. This advisory contains the container images for Red Hat OpenShift Container Platform 4.7.16. See the following advisories for the RPM packages for this release: https://access.redhat.com/errata/RHBA-2287 Space precludes documenting all of the container images in this advisory. Additional Changes: This update also fixes several bugs. Documentation for these changes is available from the Release Notes document linked to in the References section. Solution: For OpenShift Container Platform 4.7 see the following documentation, which will be updated shortly for this release, for important instructions on how to upgrade your cluster and fully apply this asynchronous errata update: https://docs.openshift.com/container-platform/4.7/release_notes/ocp-4-7-rel ease-notes.html Details on how to access this content are available at https://docs.openshift.com/container-platform/4.7/updating/updating-cluster - -cli.html 4. Bugs fixed (https://bugzilla.redhat.com/): 1889659 - [Assisted-4.6] [cluster validation] Number of hosts validation is not enforced when Automatic role assigned 1921650 - CVE-2021-3121 gogo/protobuf: plugin/unmarshal/unmarshal.go lacks certain index validation 1932638 - Removing ssh keys MC does not remove the key from authorized_keys 1934180 - vsphere-problem-detector should check if datastore is part of datastore cluster 1937396 - when kuryr quotas are unlimited, we should not sent alerts 1939014 - [OSP] First public endpoint is used to fetch ignition config from Glance URL (with multiple endpoints) on OSP 1939553 - Binary file uploaded to a secret in OCP 4 GUI is not properly converted to Base64-encoded string 1940275 - [IPI Baremetal] Revert Sending full ignition to masters 1942603 - [4.7z] Network policies in ovn-kubernetes don't support external traffic from router when the endpoint publishing strategy is HostNetwork 1944046 - Warn users when using an unsupported browser such as IE 1944575 - Duplicate alert rules are displayed on console for thanos-querier api return wrong results 1945702 - Operator dependency not consistently chosen from default channel 1946682 - [OVN] Source IP is not EgressIP if configured allow 0.0.0.0/0 in the EgressFirewall 1947091 - Incorrect skipped status for conditional tasks in the pipeline run 1947427 - Bootstrap ignition shim doesn't follow proxy settings 1948398 - [oVirt] remove ovirt_cafile from ovirt-credentials secret 1949541 - Kuryr-Controller crashes when it's missing the status object 1950290 - KubeClientCertificateExpiration alert is confusing, without explanation in the documentation 1951210 - Pod log filename no longer in <pod-name>-<container-name>.log format 1953475 - worker pool went degraded due to no rpm-ostree on rhel worker during applying new mc 1954121 - [ceo] [release-4.7] Operator goes degraded when a second internal node ip is added after install 1955210 - OCP 4.6 Build fails when filename contains an umlaut 1955418 - 4.8 -> 4.7 rollbacks broken on unrecognized flowschema openshift-etcd-operator 1955482 - [4.7] Drop high-cardinality metrics from kube-state-metrics which aren't used 1955600 - e2e unidling test flakes in CI 1956565 - Need ACM Managed Cluster Info metric enabled for OCP monitoring telemetry 1956980 - OVN-Kubernetes leaves stale AddressSets around if the deletion was missed. 1957308 - Customer tags cannot be seen in S3 level when set spec.managementState from Managed-> Removed-> Managed in configs.imageregistry with high ratio 1957499 - OperatorHub - console accepts any value for "Infrastructure features" annotation 1958416 - openshift-oauth-apiserver apiserver pod crashloopbackoffs 1958467 - [4.7] Webscale: sriov vfs are not created and sriovnetworknodestate indicates sync succeeded - state is not correct 1958873 - Device Replacemet UI, The status of the disk is "replacement ready" before I clicked on "start replacement" 1959546 - [4.7] storage-operator/vsphere-problem-detector causing upgrades to fail that would have succeeded in past versions 1959737 - Unable to assign nodes for EgressIP even if the egress-assignable label is set 1960093 - Console not works well against a proxy in front of openshift clusters 1960111 - Port 8080 of oVirt CSI driver is causing collisions with other services 1960542 - manifests: invalid selector in ServiceMonitor makes CVO hotloop 1960544 - Overly generic CSS rules for dd and dt elements breaks styling elsewhere in console 1960562 - manifests: invalid selector in ServiceMonitor makes CVO hotloop 1960589 - manifests: extra "spec.version" in console quickstarts makes CVO hotloop 1960645 - [Backport 4.7] Add virt_platform metric to the collected metrics 1960686 - GlobalConfigPage is constantly requesting resources 1961069 - CMO end-to-end tests work only on AWS 1961367 - Conformance tests for OpenStack require the Cinder client that is not included in the "tests" image 1961518 - manifests: invalid selector in ServiceMonitor makes CVO hotloop 1961557 - [release-4.7] respect the shutdown-delay-duration from OpenShiftAPIServerConfig 1961719 - manifests: invalid namespace in ClusterRoleBinding makes CVO hotloop 1961887 - TaskRuns Tab in PipelineRun Details Page makes cluster based calls for TaskRuns 1962314 - openshift-marketplace pods in CrashLoopBackOff state after RHACS installed with an SCC with readOnlyFileSystem set to true 1962493 - Kebab menu of taskrun contains Edit options which should not be present 1962637 - Nodes tainted after configuring additional host iface 1962819 - OCP v4.7 installation with OVN-Kubernetes fails with error "egress bandwidth restriction -1 is not equals" 1962949 - e2e-metal-ipi and related jobs fail to bootstrap due to multipe VIP's 1963141 - packageserver clusteroperator Available condition set to false on any Deployment spec change 1963243 - HAproxy pod logs showing error "another server named 'pod:httpd-7c7ccfffdc-wdkvk:httpd:8080-tcp:10.128.x.x:8080' was already defined at line 326, please use distinct names" 1964322 - UI, The status of "Used Capacity Breakdown [Pods]" is "Not available" 1964568 - Failed to upgrade from 4.6.25 to 4.7.8 due to the machine-config degradation 1965075 - [4.7z] After upgrade from 4.5.16 to 4.6.17, customer's application is seeing re-transmits 1965932 - [oauth-server] bump k8s.io/apiserver to 1.20.3 1966358 - Build failure on s390x 1966798 - [tests] Release 4.7 broken due to the usage of wrong OCS version 1966810 - Failing Test vendor/k8s.io/kube-aggregator/pkg/apiserver TestProxyCertReload due to hardcoded certificate expiration 1967328 - [IBM][ROKS] Enable volume snapshot controllers on IBM Cloud 1967966 - prometheus-k8s pods can't be scheduled due to volume node affinity conflict 1967972 - [calico] rbac-proxy container in kube-proxy fails to create tokenreviews 1970322 - [OVN]EgressFirewall doesn't work well as expected 5. 8) - x86_64 3. Description: The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements. Bug Fix(es): * kernel-rt: update RT source tree to the RHEL-8.4.z0 source tree (BZ#1957489) 4. Description: This is a kernel live patch module which is automatically loaded by the RPM post-install script to modify the code of a running kernel. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Important: kernel security and bug fix update Advisory ID: RHSA-2021:2168-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2021:2168 Issue date: 2021-06-01 CVE Names: CVE-2021-3501 CVE-2021-3543 ==================================================================== 1. Summary: An update for kernel is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat CodeReady Linux Builder (v. 8) - aarch64, ppc64le, x86_64 Red Hat Enterprise Linux BaseOS (v. 8) - aarch64, noarch, ppc64le, s390x, x86_64 3. Security Fix(es): * kernel: userspace applications can misuse the KVM API to cause a write of 16 bytes at an offset up to 32 GB from vcpu->run (CVE-2021-3501) * kernel: nitro_enclaves stale file descriptors on failed usercopy (CVE-2021-3543) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Bug Fix(es): * OVS mistakenly using local IP as tun_dst for VXLAN packets (?) (BZ#1944667) * Selinux: The task calling security_set_bools() deadlocks with itself when it later calls selinux_audit_rule_match(). (BZ#1945123) * [mlx5] tc flower mpls match options does not work (BZ#1952061) * mlx5: missing patches for ct.rel (BZ#1952062) * CT HWOL: with OVN/OVS, intermittently, load balancer hairpin TCP packets get dropped for seconds in a row (BZ#1952065) * [Lenovo 8.3 bug] Blackscreen after clicking on "Settings" icon from top-right corner. (BZ#1952900) * RHEL 8.x missing uio upstream fix. (BZ#1952952) * Turbostat doesn't show any measured data on AMD Milan (BZ#1952987) * P620 no sound from front headset jack (BZ#1954545) * RHEL kernel 8.2 and higher are affected by data corruption bug in raid1 arrays using bitmaps. (BZ#1955188) * [net/sched] connection failed with DNAT + SNAT by tc action ct (BZ#1956458) 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 The system must be rebooted for this update to take effect. 5. Bugs fixed (https://bugzilla.redhat.com/): 1950136 - CVE-2021-3501 kernel: userspace applications can misuse the KVM API to cause a write of 16 bytes at an offset up to 32 GB from vcpu->run 1953022 - CVE-2021-3543 kernel: nitro_enclaves stale file descriptors on failed usercopy 6. Package List: Red Hat Enterprise Linux BaseOS (v. 8): Source: kernel-4.18.0-305.3.1.el8_4.src.rpm aarch64: bpftool-4.18.0-305.3.1.el8_4.aarch64.rpm bpftool-debuginfo-4.18.0-305.3.1.el8_4.aarch64.rpm kernel-4.18.0-305.3.1.el8_4.aarch64.rpm kernel-core-4.18.0-305.3.1.el8_4.aarch64.rpm kernel-cross-headers-4.18.0-305.3.1.el8_4.aarch64.rpm kernel-debug-4.18.0-305.3.1.el8_4.aarch64.rpm kernel-debug-core-4.18.0-305.3.1.el8_4.aarch64.rpm kernel-debug-debuginfo-4.18.0-305.3.1.el8_4.aarch64.rpm kernel-debug-devel-4.18.0-305.3.1.el8_4.aarch64.rpm kernel-debug-modules-4.18.0-305.3.1.el8_4.aarch64.rpm kernel-debug-modules-extra-4.18.0-305.3.1.el8_4.aarch64.rpm kernel-debuginfo-4.18.0-305.3.1.el8_4.aarch64.rpm kernel-debuginfo-common-aarch64-4.18.0-305.3.1.el8_4.aarch64.rpm kernel-devel-4.18.0-305.3.1.el8_4.aarch64.rpm kernel-headers-4.18.0-305.3.1.el8_4.aarch64.rpm kernel-modules-4.18.0-305.3.1.el8_4.aarch64.rpm kernel-modules-extra-4.18.0-305.3.1.el8_4.aarch64.rpm kernel-tools-4.18.0-305.3.1.el8_4.aarch64.rpm kernel-tools-debuginfo-4.18.0-305.3.1.el8_4.aarch64.rpm kernel-tools-libs-4.18.0-305.3.1.el8_4.aarch64.rpm perf-4.18.0-305.3.1.el8_4.aarch64.rpm perf-debuginfo-4.18.0-305.3.1.el8_4.aarch64.rpm python3-perf-4.18.0-305.3.1.el8_4.aarch64.rpm python3-perf-debuginfo-4.18.0-305.3.1.el8_4.aarch64.rpm noarch: kernel-abi-stablelists-4.18.0-305.3.1.el8_4.noarch.rpm kernel-doc-4.18.0-305.3.1.el8_4.noarch.rpm ppc64le: bpftool-4.18.0-305.3.1.el8_4.ppc64le.rpm bpftool-debuginfo-4.18.0-305.3.1.el8_4.ppc64le.rpm kernel-4.18.0-305.3.1.el8_4.ppc64le.rpm kernel-core-4.18.0-305.3.1.el8_4.ppc64le.rpm kernel-cross-headers-4.18.0-305.3.1.el8_4.ppc64le.rpm kernel-debug-4.18.0-305.3.1.el8_4.ppc64le.rpm kernel-debug-core-4.18.0-305.3.1.el8_4.ppc64le.rpm kernel-debug-debuginfo-4.18.0-305.3.1.el8_4.ppc64le.rpm kernel-debug-devel-4.18.0-305.3.1.el8_4.ppc64le.rpm kernel-debug-modules-4.18.0-305.3.1.el8_4.ppc64le.rpm kernel-debug-modules-extra-4.18.0-305.3.1.el8_4.ppc64le.rpm kernel-debuginfo-4.18.0-305.3.1.el8_4.ppc64le.rpm kernel-debuginfo-common-ppc64le-4.18.0-305.3.1.el8_4.ppc64le.rpm kernel-devel-4.18.0-305.3.1.el8_4.ppc64le.rpm kernel-headers-4.18.0-305.3.1.el8_4.ppc64le.rpm kernel-modules-4.18.0-305.3.1.el8_4.ppc64le.rpm kernel-modules-extra-4.18.0-305.3.1.el8_4.ppc64le.rpm kernel-tools-4.18.0-305.3.1.el8_4.ppc64le.rpm kernel-tools-debuginfo-4.18.0-305.3.1.el8_4.ppc64le.rpm kernel-tools-libs-4.18.0-305.3.1.el8_4.ppc64le.rpm perf-4.18.0-305.3.1.el8_4.ppc64le.rpm perf-debuginfo-4.18.0-305.3.1.el8_4.ppc64le.rpm python3-perf-4.18.0-305.3.1.el8_4.ppc64le.rpm python3-perf-debuginfo-4.18.0-305.3.1.el8_4.ppc64le.rpm s390x: bpftool-4.18.0-305.3.1.el8_4.s390x.rpm bpftool-debuginfo-4.18.0-305.3.1.el8_4.s390x.rpm kernel-4.18.0-305.3.1.el8_4.s390x.rpm kernel-core-4.18.0-305.3.1.el8_4.s390x.rpm kernel-cross-headers-4.18.0-305.3.1.el8_4.s390x.rpm kernel-debug-4.18.0-305.3.1.el8_4.s390x.rpm kernel-debug-core-4.18.0-305.3.1.el8_4.s390x.rpm kernel-debug-debuginfo-4.18.0-305.3.1.el8_4.s390x.rpm kernel-debug-devel-4.18.0-305.3.1.el8_4.s390x.rpm kernel-debug-modules-4.18.0-305.3.1.el8_4.s390x.rpm kernel-debug-modules-extra-4.18.0-305.3.1.el8_4.s390x.rpm kernel-debuginfo-4.18.0-305.3.1.el8_4.s390x.rpm kernel-debuginfo-common-s390x-4.18.0-305.3.1.el8_4.s390x.rpm kernel-devel-4.18.0-305.3.1.el8_4.s390x.rpm kernel-headers-4.18.0-305.3.1.el8_4.s390x.rpm kernel-modules-4.18.0-305.3.1.el8_4.s390x.rpm kernel-modules-extra-4.18.0-305.3.1.el8_4.s390x.rpm kernel-tools-4.18.0-305.3.1.el8_4.s390x.rpm kernel-tools-debuginfo-4.18.0-305.3.1.el8_4.s390x.rpm kernel-zfcpdump-4.18.0-305.3.1.el8_4.s390x.rpm kernel-zfcpdump-core-4.18.0-305.3.1.el8_4.s390x.rpm kernel-zfcpdump-debuginfo-4.18.0-305.3.1.el8_4.s390x.rpm kernel-zfcpdump-devel-4.18.0-305.3.1.el8_4.s390x.rpm kernel-zfcpdump-modules-4.18.0-305.3.1.el8_4.s390x.rpm kernel-zfcpdump-modules-extra-4.18.0-305.3.1.el8_4.s390x.rpm perf-4.18.0-305.3.1.el8_4.s390x.rpm perf-debuginfo-4.18.0-305.3.1.el8_4.s390x.rpm python3-perf-4.18.0-305.3.1.el8_4.s390x.rpm python3-perf-debuginfo-4.18.0-305.3.1.el8_4.s390x.rpm x86_64: bpftool-4.18.0-305.3.1.el8_4.x86_64.rpm bpftool-debuginfo-4.18.0-305.3.1.el8_4.x86_64.rpm kernel-4.18.0-305.3.1.el8_4.x86_64.rpm kernel-core-4.18.0-305.3.1.el8_4.x86_64.rpm kernel-cross-headers-4.18.0-305.3.1.el8_4.x86_64.rpm kernel-debug-4.18.0-305.3.1.el8_4.x86_64.rpm kernel-debug-core-4.18.0-305.3.1.el8_4.x86_64.rpm kernel-debug-debuginfo-4.18.0-305.3.1.el8_4.x86_64.rpm kernel-debug-devel-4.18.0-305.3.1.el8_4.x86_64.rpm kernel-debug-modules-4.18.0-305.3.1.el8_4.x86_64.rpm kernel-debug-modules-extra-4.18.0-305.3.1.el8_4.x86_64.rpm kernel-debuginfo-4.18.0-305.3.1.el8_4.x86_64.rpm kernel-debuginfo-common-x86_64-4.18.0-305.3.1.el8_4.x86_64.rpm kernel-devel-4.18.0-305.3.1.el8_4.x86_64.rpm kernel-headers-4.18.0-305.3.1.el8_4.x86_64.rpm kernel-modules-4.18.0-305.3.1.el8_4.x86_64.rpm kernel-modules-extra-4.18.0-305.3.1.el8_4.x86_64.rpm kernel-tools-4.18.0-305.3.1.el8_4.x86_64.rpm kernel-tools-debuginfo-4.18.0-305.3.1.el8_4.x86_64.rpm kernel-tools-libs-4.18.0-305.3.1.el8_4.x86_64.rpm perf-4.18.0-305.3.1.el8_4.x86_64.rpm perf-debuginfo-4.18.0-305.3.1.el8_4.x86_64.rpm python3-perf-4.18.0-305.3.1.el8_4.x86_64.rpm python3-perf-debuginfo-4.18.0-305.3.1.el8_4.x86_64.rpm Red Hat CodeReady Linux Builder (v. 8): aarch64: bpftool-debuginfo-4.18.0-305.3.1.el8_4.aarch64.rpm kernel-debug-debuginfo-4.18.0-305.3.1.el8_4.aarch64.rpm kernel-debuginfo-4.18.0-305.3.1.el8_4.aarch64.rpm kernel-debuginfo-common-aarch64-4.18.0-305.3.1.el8_4.aarch64.rpm kernel-tools-debuginfo-4.18.0-305.3.1.el8_4.aarch64.rpm kernel-tools-libs-devel-4.18.0-305.3.1.el8_4.aarch64.rpm perf-debuginfo-4.18.0-305.3.1.el8_4.aarch64.rpm python3-perf-debuginfo-4.18.0-305.3.1.el8_4.aarch64.rpm ppc64le: bpftool-debuginfo-4.18.0-305.3.1.el8_4.ppc64le.rpm kernel-debug-debuginfo-4.18.0-305.3.1.el8_4.ppc64le.rpm kernel-debuginfo-4.18.0-305.3.1.el8_4.ppc64le.rpm kernel-debuginfo-common-ppc64le-4.18.0-305.3.1.el8_4.ppc64le.rpm kernel-tools-debuginfo-4.18.0-305.3.1.el8_4.ppc64le.rpm kernel-tools-libs-devel-4.18.0-305.3.1.el8_4.ppc64le.rpm perf-debuginfo-4.18.0-305.3.1.el8_4.ppc64le.rpm python3-perf-debuginfo-4.18.0-305.3.1.el8_4.ppc64le.rpm x86_64: bpftool-debuginfo-4.18.0-305.3.1.el8_4.x86_64.rpm kernel-debug-debuginfo-4.18.0-305.3.1.el8_4.x86_64.rpm kernel-debuginfo-4.18.0-305.3.1.el8_4.x86_64.rpm kernel-debuginfo-common-x86_64-4.18.0-305.3.1.el8_4.x86_64.rpm kernel-tools-debuginfo-4.18.0-305.3.1.el8_4.x86_64.rpm kernel-tools-libs-devel-4.18.0-305.3.1.el8_4.x86_64.rpm perf-debuginfo-4.18.0-305.3.1.el8_4.x86_64.rpm python3-perf-debuginfo-4.18.0-305.3.1.el8_4.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/ 7. References: https://access.redhat.com/security/cve/CVE-2021-3501 https://access.redhat.com/security/cve/CVE-2021-3543 https://access.redhat.com/security/updates/classification/#important 8. Contact: The Red Hat security contact is <secalert@redhat.com>. More contact details at https://access.redhat.com/security/team/contact/ Copyright 2021 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBYLYUb9zjgjWX9erEAQjOwQ/+N/4DWSVy3kFJAXtmKzWp0MCNQvIKiusG CYk2Fac6ueif1+piE6Yrq7PJupzFK1TFxBZ2TSvvgUL8ha8QBGkeRH7HXlweLrmb C8axB3MpfDu49/G0hTjWBOGbGbS+yhvnPJZVjPTcufKUdvuQyd7tx3dPu4M/UhCg pN9q+M5/PojvBB5p7PAh4MkQ1vLo9HiO6JooqOyNzWH6Gr8YrLQylMiWTED77NyK jHWyS2nfCJnEsyHo/hMk9OUy1IiHhVBvlsgaGweFY8kobCiGIzjUE9CkSdjqovYr yz6etZFVnIaqxce4QbTQgfY1kYh+dZLRLLwlba7nmxXuYgb/3Q/JllCyGldtWMFG R4tHWqdlnCDCwSmIOfhCElTPGt46NbZJpv+vzGM17djxvxzoymQt1lck+mngR6To woA+lbf6ByPR6uDzpYJoaOBDPq14QFzW+WpxuQ5MuhMYrzZVqjY5btly8rRaAKVo I8FofcuISc2ugEm6zh7olGvjPAAd1uVGFIPcnBp/Px/xyE7RgdOyCRLDNcYLx0v/ Kr+f1wFe4LWBC3YqBkfK9tikB5lQmOor3QAH3GR0/oGmzI3NNBwbupksrrmxmAxd RtRx/jfaXqtcL0mdST6OQGjaHk7NdiCNF9ym1hSX4RXTrgs4nojVA6C7vf4U4p2u ec3DLIN9CmM=+n9i -----END PGP SIGNATURE----- -- RHSA-announce mailing list RHSA-announce@redhat.com https://listman.redhat.com/mailman/listinfo/rhsa-announce . ========================================================================== Ubuntu Security Notice USN-4977-1 June 02, 2021 linux, linux-aws, linux-azure, linux-gcp, linux-kvm, linux-oracle vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 21.04 Summary: Several security issues were fixed in the Linux kernel. A local attacker could use this to cause a denial of service (system crash). (CVE-2020-25670) Kiyin (尹亮) discovered that the NFC LLCP protocol implementation in the Linux kernel did not properly deallocate memory in certain error situations. A local attacker could use this to cause a denial of service (memory exhaustion). (CVE-2020-25671, CVE-2020-25672) Kiyin (尹亮) discovered that the NFC LLCP protocol implementation in the Linux kernel did not properly handle error conditions in some situations, leading to an infinite loop. A local attacker could use this to cause a denial of service. (CVE-2020-25673) Piotr Krysiuk and Benedict Schlueter discovered that the eBPF implementation in the Linux kernel performed out of bounds speculation on pointer arithmetic. A local attacker could use this to expose sensitive information. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2021-3501) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 21.04: linux-image-5.11.0-1006-azure 5.11.0-1006.6 linux-image-5.11.0-1007-oracle 5.11.0-1007.7 linux-image-5.11.0-1008-aws 5.11.0-1008.8 linux-image-5.11.0-1008-gcp 5.11.0-1008.9 linux-image-5.11.0-1008-kvm 5.11.0-1008.8 linux-image-5.11.0-18-generic 5.11.0-18.19 linux-image-5.11.0-18-generic-64k 5.11.0-18.19 linux-image-5.11.0-18-generic-lpae 5.11.0-18.19 linux-image-5.11.0-18-lowlatency 5.11.0-18.19 linux-image-aws 5.11.0.1008.8 linux-image-azure 5.11.0.1006.6 linux-image-gcp 5.11.0.1008.8 linux-image-generic 5.11.0.18.19 linux-image-generic-64k 5.11.0.18.19 linux-image-generic-lpae 5.11.0.18.19 linux-image-gke 5.11.0.1008.8 linux-image-kvm 5.11.0.1008.8 linux-image-lowlatency 5.11.0.18.19 linux-image-oracle 5.11.0.1007.7 linux-image-virtual 5.11.0.18.19 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well

Trust: 2.43

sources: NVD: CVE-2021-3501 // JVNDB: JVNDB-2021-006584 // VULHUB: VHN-391161 // VULMON: CVE-2021-3501 // PACKETSTORM: 163188 // PACKETSTORM: 163149 // PACKETSTORM: 162881 // PACKETSTORM: 162882 // PACKETSTORM: 162890 // PACKETSTORM: 162977 // PACKETSTORM: 162936

AFFECTED PRODUCTS

vendor:netappmodel:h700escope:eqversion: -

Trust: 1.0

vendor:redhatmodel:virtualizationscope:eqversion:4.0

Trust: 1.0

vendor:netappmodel:h410cscope:eqversion: -

Trust: 1.0

vendor:netappmodel:h500escope:eqversion: -

Trust: 1.0

vendor:redhatmodel:enterprise linuxscope:eqversion:8.0

Trust: 1.0

vendor:netappmodel:h300sscope:eqversion: -

Trust: 1.0

vendor:redhatmodel:enterprise linux for real timescope:eqversion:8

Trust: 1.0

vendor:netappmodel:h410sscope:eqversion: -

Trust: 1.0

vendor:netappmodel:h500sscope:eqversion: -

Trust: 1.0

vendor:netappmodel:h700sscope:eqversion: -

Trust: 1.0

vendor:fedoraprojectmodel:fedorascope:eqversion:33

Trust: 1.0

vendor:redhatmodel:virtualization hostscope:eqversion:4.0

Trust: 1.0

vendor:netappmodel:h300escope:eqversion: -

Trust: 1.0

vendor:redhatmodel:enterprise linux for real time for nfvscope:eqversion:8

Trust: 1.0

vendor:netappmodel:cloud backupscope:eqversion: -

Trust: 1.0

vendor:redhatmodel:enterprise linux for real time for nfv tusscope:eqversion:8.4

Trust: 1.0

vendor:netappmodel:solidfire baseboard management controllerscope:eqversion: -

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:5.12

Trust: 1.0

vendor:redhatmodel:enterprise linux for real time tusscope:eqversion:8.4

Trust: 1.0

vendor:レッドハットmodel:red hat enterprise linuxscope: - version: -

Trust: 0.8

vendor:linuxmodel:kernelscope: - version: -

Trust: 0.8

sources: JVNDB: JVNDB-2021-006584 // NVD: CVE-2021-3501

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2021-3501
value: HIGH

Trust: 1.0

NVD: CVE-2021-3501
value: HIGH

Trust: 0.8

CNNVD: CNNVD-202105-271
value: HIGH

Trust: 0.6

VULHUB: VHN-391161
value: LOW

Trust: 0.1

VULMON: CVE-2021-3501
value: LOW

Trust: 0.1

nvd@nist.gov: CVE-2021-3501
severity: LOW
baseScore: 3.6
vectorString: AV:L/AC:L/AU:N/C:N/I:P/A:P
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 3.9
impactScore: 4.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.9

VULHUB: VHN-391161
severity: LOW
baseScore: 3.6
vectorString: AV:L/AC:L/AU:N/C:N/I:P/A:P
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 3.9
impactScore: 4.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

nvd@nist.gov: CVE-2021-3501
baseSeverity: HIGH
baseScore: 7.1
vectorString: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
attackVector: LOCAL
attackComplexity: LOW
privilegesRequired: LOW
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: NONE
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 1.8
impactScore: 5.2
version: 3.1

Trust: 1.0

NVD: CVE-2021-3501
baseSeverity: HIGH
baseScore: 7.1
vectorString: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
attackVector: LOCAL
attackComplexity: LOW
privilegesRequired: LOW
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: NONE
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: NONE
impactScore: NONE
version: 3.0

Trust: 0.8

sources: VULHUB: VHN-391161 // VULMON: CVE-2021-3501 // JVNDB: JVNDB-2021-006584 // CNNVD: CNNVD-202105-271 // NVD: CVE-2021-3501

PROBLEMTYPE DATA

problemtype:CWE-787

Trust: 1.1

problemtype:Out-of-bounds writing (CWE-787) [ Other ]

Trust: 0.8

sources: VULHUB: VHN-391161 // JVNDB: JVNDB-2021-006584 // NVD: CVE-2021-3501

THREAT TYPE

local

Trust: 0.8

sources: PACKETSTORM: 162977 // PACKETSTORM: 162936 // CNNVD: CNNVD-202105-271

TYPE

buffer error

Trust: 0.6

sources: CNNVD: CNNVD-202105-271

PATCH

title:Bug 1950136url:http://www.kernel.org

Trust: 0.8

title:Linux kernel Buffer error vulnerability fixurl:http://www.cnnvd.org.cn/web/xxk/bdxqById.tag?id=150809

Trust: 0.6

title:Red Hat: CVE-2021-3501url:https://vulmon.com/vendoradvisory?qidtp=red_hat_cve_database&qid=CVE-2021-3501

Trust: 0.1

title:Arch Linux Issues: url:https://vulmon.com/vendoradvisory?qidtp=arch_linux_issues&qid=CVE-2021-3501 log

Trust: 0.1

sources: VULMON: CVE-2021-3501 // JVNDB: JVNDB-2021-006584 // CNNVD: CNNVD-202105-271

EXTERNAL IDS

db:NVDid:CVE-2021-3501

Trust: 4.1

db:PACKETSTORMid:162977

Trust: 0.8

db:PACKETSTORMid:162936

Trust: 0.8

db:PACKETSTORMid:163149

Trust: 0.8

db:PACKETSTORMid:162881

Trust: 0.8

db:JVNDBid:JVNDB-2021-006584

Trust: 0.8

db:CNNVDid:CNNVD-202105-271

Trust: 0.7

db:AUSCERTid:ESB-2021.1945

Trust: 0.6

db:AUSCERTid:ESB-2021.1919

Trust: 0.6

db:AUSCERTid:ESB-2021.1868

Trust: 0.6

db:AUSCERTid:ESB-2021.2131

Trust: 0.6

db:PACKETSTORMid:162890

Trust: 0.2

db:PACKETSTORMid:162882

Trust: 0.2

db:PACKETSTORMid:163242

Trust: 0.1

db:VULHUBid:VHN-391161

Trust: 0.1

db:VULMONid:CVE-2021-3501

Trust: 0.1

db:PACKETSTORMid:163188

Trust: 0.1

sources: VULHUB: VHN-391161 // VULMON: CVE-2021-3501 // JVNDB: JVNDB-2021-006584 // PACKETSTORM: 163188 // PACKETSTORM: 163149 // PACKETSTORM: 162881 // PACKETSTORM: 162882 // PACKETSTORM: 162890 // PACKETSTORM: 162977 // PACKETSTORM: 162936 // CNNVD: CNNVD-202105-271 // NVD: CVE-2021-3501

REFERENCES

url:https://bugzilla.redhat.com/show_bug.cgi?id=1950136

Trust: 1.8

url:https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=04c4f2ee3f68c9a4bf1653d15f1a9a435ae33f7a

Trust: 1.8

url:https://nvd.nist.gov/vuln/detail/cve-2021-3501

Trust: 1.4

url:https://security.netapp.com/advisory/ntap-20210618-0008/

Trust: 1.1

url:https://access.redhat.com/security/cve/cve-2021-3501

Trust: 0.6

url:https://packetstormsecurity.com/files/162977/ubuntu-security-notice-usn-4983-1.html

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2021.2131

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2021.1919

Trust: 0.6

url:https://packetstormsecurity.com/files/163149/red-hat-security-advisory-2021-2286-01.html

Trust: 0.6

url:https://vigilance.fr/vulnerability/linux-kernel-memory-corruption-via-kvm-35276

Trust: 0.6

url:https://packetstormsecurity.com/files/162936/ubuntu-security-notice-usn-4977-1.html

Trust: 0.6

url:https://packetstormsecurity.com/files/162881/red-hat-security-advisory-2021-2169-01.html

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2021.1868

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2021.1945

Trust: 0.6

url:https://listman.redhat.com/mailman/listinfo/rhsa-announce

Trust: 0.5

url:https://bugzilla.redhat.com/):

Trust: 0.5

url:https://access.redhat.com/security/team/contact/

Trust: 0.5

url:https://access.redhat.com/security/cve/cve-2021-3543

Trust: 0.4

url:https://nvd.nist.gov/vuln/detail/cve-2021-3543

Trust: 0.3

url:https://access.redhat.com/security/updates/classification/#important

Trust: 0.3

url:https://access.redhat.com/articles/11258

Trust: 0.3

url:https://access.redhat.com/security/team/key/

Trust: 0.3

url:https://access.redhat.com/security/cve/cve-2021-27219

Trust: 0.2

url:https://access.redhat.com/security/updates/classification/#moderate

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2021-29155

Trust: 0.2

url:https://cwe.mitre.org/data/definitions/787.html

Trust: 0.1

url:https://nvd.nist.gov

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-25039

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-8286

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-28196

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-15358

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2020-15358

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2021-21639

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2020-12364

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2021-28165

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2017-14502

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2021-28092

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-13434

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-25037

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2020-13776

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2019-25037

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2019-3842

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-13776

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-24977

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-12363

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-8231

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-10878

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-29362

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2020-24330

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-28935

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2021-28163

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2020-13434

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2017-14502

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2019-25034

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-8285

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2019-25035

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2016-10228

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2019-9169

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2019-14866

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-26116

Trust: 0.1

url:https://access.redhat.com/documentation/en-us/red_hat_advanced_cluster_mana

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2019-25038

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-14866

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-26137

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-25013

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2021-21309

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-25040

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2021-21640

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-29361

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2021-28918

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-24330

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-25042

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2019-25042

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-12362

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-25648

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-25038

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2019-25032

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2019-25041

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-8648

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2019-25036

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-25032

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-27619

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-27170

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2021-25215

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2021-3177

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-9169

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-24331

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-25692

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2021-3326

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-25036

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2019-25013

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-25035

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2019-2708

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2021-23336

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2020-2433

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-8927

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2020-10543

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2021-3347

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2020-12362

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2020-12363

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-29363

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-24332

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2021-3114

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-28362

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-3842

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-10543

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2019-25039

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2019-25040

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-12364

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-2708

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2016-10228

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2020-10878

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-25041

Trust: 0.1

url:https://access.redhat.com/errata/rhsa-2021:2461

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-8284

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2019-25034

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-27618

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2021-3121

Trust: 0.1

url:https://access.redhat.com/errata/rhsa-2021:2286

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2021-3121

Trust: 0.1

url:https://docs.openshift.com/container-platform/4.7/release_notes/ocp-4-7-rel

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2021-27219

Trust: 0.1

url:https://access.redhat.com/errata/rhba-2287

Trust: 0.1

url:https://docs.openshift.com/container-platform/4.7/updating/updating-cluster

Trust: 0.1

url:https://access.redhat.com/errata/rhsa-2021:2169

Trust: 0.1

url:https://access.redhat.com/errata/rhsa-2021:2165

Trust: 0.1

url:https://access.redhat.com/errata/rhsa-2021:2168

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2021-31829

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2021-33200

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-oem-5.10/5.10.0-1029.30

Trust: 0.1

url:https://ubuntu.com/security/notices/usn-4983-1

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-oracle/5.11.0-1007.7

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-gcp/5.11.0-1008.9

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-kvm/5.11.0-1008.8

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-aws/5.11.0-1008.8

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux/5.11.0-18.19

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2020-25670

Trust: 0.1

url:https://ubuntu.com/security/notices/usn-4977-1

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-azure/5.11.0-1006.6

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2020-25673

Trust: 0.1

sources: VULHUB: VHN-391161 // VULMON: CVE-2021-3501 // JVNDB: JVNDB-2021-006584 // PACKETSTORM: 163188 // PACKETSTORM: 163149 // PACKETSTORM: 162881 // PACKETSTORM: 162882 // PACKETSTORM: 162890 // PACKETSTORM: 162977 // PACKETSTORM: 162936 // CNNVD: CNNVD-202105-271 // NVD: CVE-2021-3501

CREDITS

Red Hat

Trust: 0.5

sources: PACKETSTORM: 163188 // PACKETSTORM: 163149 // PACKETSTORM: 162881 // PACKETSTORM: 162882 // PACKETSTORM: 162890

SOURCES

db:VULHUBid:VHN-391161
db:VULMONid:CVE-2021-3501
db:JVNDBid:JVNDB-2021-006584
db:PACKETSTORMid:163188
db:PACKETSTORMid:163149
db:PACKETSTORMid:162881
db:PACKETSTORMid:162882
db:PACKETSTORMid:162890
db:PACKETSTORMid:162977
db:PACKETSTORMid:162936
db:CNNVDid:CNNVD-202105-271
db:NVDid:CVE-2021-3501

LAST UPDATE DATE

2024-11-20T20:28:20.276000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-391161date:2022-05-13T00:00:00
db:VULMONid:CVE-2021-3501date:2021-05-14T00:00:00
db:JVNDBid:JVNDB-2021-006584date:2022-01-13T08:56:00
db:CNNVDid:CNNVD-202105-271date:2021-06-17T00:00:00
db:NVDid:CVE-2021-3501date:2022-05-13T20:52:55.127

SOURCES RELEASE DATE

db:VULHUBid:VHN-391161date:2021-05-06T00:00:00
db:VULMONid:CVE-2021-3501date:2021-05-06T00:00:00
db:JVNDBid:JVNDB-2021-006584date:2022-01-13T00:00:00
db:PACKETSTORMid:163188date:2021-06-17T17:53:22
db:PACKETSTORMid:163149date:2021-06-15T14:59:25
db:PACKETSTORMid:162881date:2021-06-01T15:03:46
db:PACKETSTORMid:162882date:2021-06-01T15:04:05
db:PACKETSTORMid:162890date:2021-06-01T15:11:57
db:PACKETSTORMid:162977date:2021-06-04T13:47:07
db:PACKETSTORMid:162936date:2021-06-03T14:55:35
db:CNNVDid:CNNVD-202105-271date:2021-05-06T00:00:00
db:NVDid:CVE-2021-3501date:2021-05-06T13:15:12.840