CVE-2021-27365 log
| Source |
|
| Severity | Medium |
| Remote | No |
| Type | Information disclosure |
| Description | An issue was discovered in the Linux kernel through 5.11.3. Certain iSCSI data structures do not have appropriate length constraints or checks, and can exceed the PAGE_SIZE value. An unprivileged user can send a Netlink message that is associated with iSCSI, and has a length up to the maximum length of a Netlink message. The issue is fixed in kernel versions 5.11.4 and 5.10.21. |
| Group | Package | Affected | Fixed | Severity | Status | Ticket |
|---|---|---|---|---|---|---|
| AVG-1655 | linux-lts | 5.10.20-1 | 5.10.21-1 | Medium | Fixed | |
| AVG-1653 | linux-zen | 5.11.3.zen1-1 | 5.11.4.zen1-1 | Medium | Fixed | |
| AVG-1651 | linux | 5.11.3.arch1-1 | 5.11.4.arch1-1 | Medium | Fixed | |
| AVG-1645 | linux-hardened | 5.10.19.hardened1-1 | 5.10.21.hardened1-1 | Medium | Fixed |