CVE-2021-0308
published 2021-01-11CVE-2021-0308: In ReadLogicalParts of basicmbr.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege…
PriorityP428medium6.8CVSS 3.1
AVPACLPRNUINSUCHIHAH
EPSS
0.44%
35.9th percentile
In ReadLogicalParts of basicmbr.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android; Versions: Android-8.1, Android-9, Android-10, Android-11, Android-8.0; Android ID: A-158063095.
Affected
18 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | gdisk | < gdisk 1.0.6-1 (bookworm) | gdisk 1.0.6-1 (bookworm) |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| platform | external_gptfdisk | >= 10:0 < 10:2021-01-01 | 10:2021-01-01 |
| platform | external_gptfdisk | >= 11:0 < 11:2021-01-01 | 11:2021-01-01 |
| platform | external_gptfdisk | >= 8.0:0 < 8.0:2021-01-01 | 8.0:2021-01-01 |
| platform | external_gptfdisk | >= 8.1:0 < 8.1:2021-01-01 | 8.1:2021-01-01 |
| platform | external_gptfdisk | >= 9:0 < 9:2021-01-01 | 9:2021-01-01 |
CVSS provenance
nvdv3.16.8MEDIUMCVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
osv6.8MEDIUM
vendor_debian6.8MEDIUM
vendor_redhat6.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
gdisk: possible out-of-bounds-write in ReadLogicalParts of basicmbr.cc
vendor_redhat·2022-02-04·CVSS 6.8
CVE-2021-0308 [MEDIUM] CWE-787 gdisk: possible out-of-bounds-write in ReadLogicalParts of basicmbr.cc
gdisk: possible out-of-bounds-write in ReadLogicalParts of basicmbr.cc
In ReadLogicalParts of basicmbr.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android; Versions: Android-8.1, Android-9, Android-10, Android-11, Android-8.0; Android ID: A-158063095.
An out-of-bounds write flaw was found in gdisks' ReadLogicalParts() function of 'basicmbr.cc'. The exploitation of this flaw requires the use of a malicious storage device (for example, a USB Stick) that can cause a crash when physically inserted into the system and possible local privilege escalation. This flaw allows an attacker to compromise confidentiali
Ubuntu
GPT fdisk vulnerabilities
vendor_ubuntu·2022-02-03
CVE-2020-0256 GPT fdisk vulnerabilities
Title: GPT fdisk vulnerabilities
Summary: The sgdisk utility of GPT fdisk could be made to crash or
possibly allow for elevated privileges.
The potential for an out of bounds write due to a missing bounds
check was discovered to impact the sgdisk utility of GPT fdisk.
Exploitation requires the use of a maliciously formatted storage
device and could cause sgdisk to crash as well as possibly
allow for local privilege escalation.
Instructions: In general, a standard system update will make all the necessary changes.
Android
CVE-2021-0308: Android Security Bulletin 2021-01-01
CVE: CVE-2021-0308
Severity: HIGH
Type: EoP
Affected AOSP versions: 8
vendor_android·2021-01-01·CVSS 6.8
CVE-2021-0308 [MEDIUM] CVE-2021-0308: Android Security Bulletin 2021-01-01
CVE: CVE-2021-0308
Severity: HIGH
Type: EoP
Affected AOSP versions: 8
Android Security Bulletin 2021-01-01
CVE: CVE-2021-0308
Severity: HIGH
Type: EoP
Affected AOSP versions: 8.0, 8.1, 9, 10, 11
References: A-158063095
Debian
CVE-2021-0308: gdisk - In ReadLogicalParts of basicmbr.cc, there is a possible out of bounds write due ...
vendor_debian·2021·CVSS 6.8
CVE-2021-0308 [MEDIUM] CVE-2021-0308: gdisk - In ReadLogicalParts of basicmbr.cc, there is a possible out of bounds write due ...
In ReadLogicalParts of basicmbr.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android; Versions: Android-8.1, Android-9, Android-10, Android-11, Android-8.0; Android ID: A-158063095.
Scope: local
bookworm: resolved (fixed in 1.0.6-1)
bullseye: resolved (fixed in 1.0.6-1)
forky: resolved (fixed in 1.0.6-1)
sid: resolved (fixed in 1.0.6-1)
trixie: resolved (fixed in 1.0.6-1)
GHSA
GHSA-gxqw-x97w-h62r: In ReadLogicalParts of basicmbr
ghsa_unreviewed·2022-05-24
CVE-2021-0308 [HIGH] CWE-787 GHSA-gxqw-x97w-h62r: In ReadLogicalParts of basicmbr
In ReadLogicalParts of basicmbr.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android; Versions: Android-8.1, Android-9, Android-10, Android-11, Android-8.0; Android ID: A-158063095.
OSV
CVE-2021-0308: In ReadLogicalParts of basicmbr
osv·2021-01-11·CVSS 6.8
CVE-2021-0308 [MEDIUM] CVE-2021-0308: In ReadLogicalParts of basicmbr
In ReadLogicalParts of basicmbr.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android; Versions: Android-8.1, Android-9, Android-10, Android-11, Android-8.0; Android ID: A-158063095.
OSV
CVE-2021-0308: In ReadLogicalParts of basicmbr
osv·2021-01-01
CVE-2021-0308 CVE-2021-0308: In ReadLogicalParts of basicmbr
In ReadLogicalParts of basicmbr.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://lists.debian.org/debian-lts-announce/2021/02/msg00010.htmlhttps://security.gentoo.org/glsa/202105-03https://source.android.com/security/bulletin/2021-01-01https://lists.debian.org/debian-lts-announce/2021/02/msg00010.htmlhttps://security.gentoo.org/glsa/202105-03https://source.android.com/security/bulletin/2021-01-01
2021-01-11
Published