CVE-2021-27365 log
Source |
|
Severity | Medium |
Remote | No |
Type | Information disclosure |
Description | An issue was discovered in the Linux kernel through 5.11.3. Certain iSCSI data structures do not have appropriate length constraints or checks, and can exceed the PAGE_SIZE value. An unprivileged user can send a Netlink message that is associated with iSCSI, and has a length up to the maximum length of a Netlink message. The issue is fixed in kernel versions 5.11.4 and 5.10.21. |
Group | Package | Affected | Fixed | Severity | Status | Ticket |
---|---|---|---|---|---|---|
AVG-1655 | linux-lts | 5.10.20-1 | 5.10.21-1 | Medium | Fixed | |
AVG-1653 | linux-zen | 5.11.3.zen1-1 | 5.11.4.zen1-1 | Medium | Fixed | |
AVG-1651 | linux | 5.11.3.arch1-1 | 5.11.4.arch1-1 | Medium | Fixed | |
AVG-1645 | linux-hardened | 5.10.19.hardened1-1 | 5.10.21.hardened1-1 | Medium | Fixed |