• 公告ID (KylinSec-SA-2021-1938)

摘要:

An out-of-bounds memory write flaw was found in the Linux kernel's joystick devices subsystem in versions before 5.9-rc1, in the way the user calls ioctl JSIOCSBTNMAP. This flaw allows a local user to crash the system or possibly escalate their privileges on the system. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.

安全等级: Low

公告ID: KylinSec-SA-2021-1938

发布日期: 2021年7月28日

关联CVE: CVE-2021-3612  

  • 详细介绍

1. 漏洞描述

   

An out-of-bounds memory write flaw was found in the Linux kernel's joystick devices subsystem in versions before 5.9-rc1, in the way the user calls ioctl JSIOCSBTNMAP. This flaw allows a local user to crash the system or possibly escalate their privileges on the system. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.

2. 影响范围

cve名称 产品 组件 是否受影响
CVE-2021-3612 KY3.4-4A kernel Unaffected

3. 影响组件

    无

4. 修复版本

    无

5. 修复方法

   无

6. 下载链接

    无
上一篇:KylinSec-SA-2021-1935 下一篇:KylinSec-SA-2021-1939