CVE-2021-0423
published 2021-09-27CVE-2021-0423: In memory management driver, there is a possible information disclosure due to uninitialized data. This could lead to local information disclosure with no…
PriorityP423medium5.5CVSS 3.1
AVLACLPRLUINSUCHINAN
EPSS
0.11%
1.8th percentile
In memory management driver, there is a possible information disclosure due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05403499; Issue ID: ALPS05385714.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| android | — | — | |
| android | — | — |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
osv7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-6p9x-f8x6-3gpw: In memory management driver, there is a possible information disclosure due to uninitialized data
ghsa_unreviewed·2022-05-24
CVE-2021-0423 [MEDIUM] CWE-909 GHSA-6p9x-f8x6-3gpw: In memory management driver, there is a possible information disclosure due to uninitialized data
In memory management driver, there is a possible information disclosure due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05403499; Issue ID: ALPS05385714.
OSV
linux-oem-5.6 vulnerabilities
osv·2021-04-13·CVSS 7.8
CVE-2021-29154 linux-oem-5.6 vulnerabilities
linux-oem-5.6 vulnerabilities
Piotr Krysiuk discovered that the BPF JIT compiler for x86 in the Linux
kernel did not properly validate computation of branch displacements in
some situations. A local attacker could use this to cause a denial of
service (system crash) or possibly execute arbitrary code. (CVE-2021-29154)
It was discovered that a race condition existed in the binder IPC
implementation in the Linux kernel, leading to a use-after-free
vulnerability. A local attacker could use this to cause a denial of service
(system crash) or possibly execute arbitrary code. (CVE-2020-0423)
It was discovered that the HID multitouch implementation within the Linux
kernel did not properly validate input events in some situations. A
physically proximate attacker could use this to cause a denial
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2021-21608 jenkins: Stored XSS vulnerability in button labels
bugzilla·2021-02-04·CVSS 5.4
CVE-2021-21608 [MEDIUM] CVE-2021-21608 jenkins: Stored XSS vulnerability in button labels
CVE-2021-21608 jenkins: Stored XSS vulnerability in button labels
Jenkins 2.274 and earlier, LTS 2.263.1 and earlier does not escape button labels in the Jenkins UI, resulting in a cross-site scripting (XSS) vulnerability exploitable by attackers with the ability to control button labels.
Discussion:
This issue has been addressed in the following products:
Red Hat OpenShift Container Platform 4.6
Via RHSA-2021:0423 https://access.redhat.com/errata/RHSA-2021:0423
---
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):
https://access.redhat.com/security/cve/cve-2021-21608
---
This issue has been addressed in the following products:
Red Hat OpenShift Container Platform 4.5
Via RHSA-2021:0429 https://access.redhat.com/errata/RHSA-20
Bugzilla
CVE-2021-21609 jenkins: Missing permission check for paths with specific prefix
bugzilla·2021-02-04·CVSS 5.3
CVE-2021-21609 [MEDIUM] CVE-2021-21609 jenkins: Missing permission check for paths with specific prefix
CVE-2021-21609 jenkins: Missing permission check for paths with specific prefix
Jenkins 2.274 and earlier, LTS 2.263.1 and earlier does not correctly match requested URLs to the list of always accessible paths, allowing attackers without Overall/Read permission to access some URLs as if they did have Overall/Read permission.
Discussion:
This issue has been addressed in the following products:
Red Hat OpenShift Container Platform 4.6
Via RHSA-2021:0423 https://access.redhat.com/errata/RHSA-2021:0423
---
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):
https://access.redhat.com/security/cve/cve-2021-21609
---
This issue has been addressed in the following products:
Red Hat OpenShift Container Platform 4.5
Via RHSA-2021:0429 htt
Bugzilla
CVE-2021-21610 jenkins: Reflected XSS vulnerability in markup formatter preview
bugzilla·2021-02-04·CVSS 6.1
CVE-2021-21610 [MEDIUM] CVE-2021-21610 jenkins: Reflected XSS vulnerability in markup formatter preview
CVE-2021-21610 jenkins: Reflected XSS vulnerability in markup formatter preview
Jenkins 2.274 and earlier, LTS 2.263.1 and earlier does not implement any restrictions for the URL rendering a formatted preview of markup passed as a query parameter, resulting in a reflected cross-site scripting (XSS) vulnerability if the configured markup formatter does not prohibit unsafe elements (JavaScript) in markup.
Discussion:
This issue has been addressed in the following products:
Red Hat OpenShift Container Platform 4.6
Via RHSA-2021:0423 https://access.redhat.com/errata/RHSA-2021:0423
---
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):
https://access.redhat.com/security/cve/cve-2021-21610
---
This issue has been addressed in the follo
Bugzilla
CVE-2021-21604 jenkins: Improper handling of REST API XML deserialization errors
bugzilla·2021-02-04·CVSS 8.0
CVE-2021-21604 [HIGH] CVE-2021-21604 jenkins: Improper handling of REST API XML deserialization errors
CVE-2021-21604 jenkins: Improper handling of REST API XML deserialization errors
Jenkins 2.274 and earlier, LTS 2.263.1 and earlier allows attackers with permission to create or configure various objects to inject crafted content into Old Data Monitor that results in the instantiation of potentially unsafe objects once discarded by an administrator.
Discussion:
This issue has been addressed in the following products:
Red Hat OpenShift Container Platform 4.6
Via RHSA-2021:0423 https://access.redhat.com/errata/RHSA-2021:0423
---
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):
https://access.redhat.com/security/cve/cve-2021-21604
---
This issue has been addressed in the following products:
Red Hat OpenShift Container Platform 4.
Bugzilla
CVE-2021-21605 jenkins: Path traversal vulnerability in agent names
bugzilla·2021-02-04·CVSS 8.0
CVE-2021-21605 [HIGH] CVE-2021-21605 jenkins: Path traversal vulnerability in agent names
CVE-2021-21605 jenkins: Path traversal vulnerability in agent names
Jenkins 2.274 and earlier, LTS 2.263.1 and earlier allows users with Agent/Configure permission to choose agent names that cause Jenkins to override the global `config.xml` file.
Discussion:
This issue has been addressed in the following products:
Red Hat OpenShift Container Platform 4.6
Via RHSA-2021:0423 https://access.redhat.com/errata/RHSA-2021:0423
---
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):
https://access.redhat.com/security/cve/cve-2021-21605
---
This issue has been addressed in the following products:
Red Hat OpenShift Container Platform 4.5
Via RHSA-2021:0429 https://access.redhat.com/errata/RHSA-2021:0429
Bugzilla
CVE-2021-21607 jenkins: Excessive memory allocation in graph URLs leads to denial of service
bugzilla·2021-02-04·CVSS 6.5
CVE-2021-21607 [MEDIUM] CVE-2021-21607 jenkins: Excessive memory allocation in graph URLs leads to denial of service
CVE-2021-21607 jenkins: Excessive memory allocation in graph URLs leads to denial of service
Jenkins 2.274 and earlier, LTS 2.263.1 and earlier does not limit sizes provided as query parameters to graph-rendering URLs, allowing attackers to request crafted URLs that use all available memory in Jenkins, potentially leading to out of memory errors.
Discussion:
This issue has been addressed in the following products:
Red Hat OpenShift Container Platform 4.6
Via RHSA-2021:0423 https://access.redhat.com/errata/RHSA-2021:0423
---
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):
https://access.redhat.com/security/cve/cve-2021-21607
---
This issue has been addressed in the following products:
Red Hat OpenShift Container Platform 4.5
Bugzilla
CVE-2021-21611 jenkins: Stored XSS vulnerability on new item page
bugzilla·2021-02-04·CVSS 5.4
CVE-2021-21611 [MEDIUM] CVE-2021-21611 jenkins: Stored XSS vulnerability on new item page
CVE-2021-21611 jenkins: Stored XSS vulnerability on new item page
Jenkins 2.274 and earlier, LTS 2.263.1 and earlier does not escape display names and IDs of item types shown on the New Item page, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers able to specify display names or IDs of item types.
Discussion:
This issue has been addressed in the following products:
Red Hat OpenShift Container Platform 4.6
Via RHSA-2021:0423 https://access.redhat.com/errata/RHSA-2021:0423
---
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):
https://access.redhat.com/security/cve/cve-2021-21611
---
This issue has been addressed in the following products:
Red Hat OpenShift Container Platform 4.5
Via RHSA-202
Bugzilla
CVE-2021-21602 jenkins: Arbitrary file read vulnerability in workspace browsers
bugzilla·2021-02-04·CVSS 6.5
CVE-2021-21602 [MEDIUM] CVE-2021-21602 jenkins: Arbitrary file read vulnerability in workspace browsers
CVE-2021-21602 jenkins: Arbitrary file read vulnerability in workspace browsers
Jenkins 2.274 and earlier, LTS 2.263.1 and earlier allows reading arbitrary files using the file browser for workspaces and archived artifacts by following symlinks.
Discussion:
This issue has been addressed in the following products:
Red Hat OpenShift Container Platform 4.6
Via RHSA-2021:0423 https://access.redhat.com/errata/RHSA-2021:0423
---
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):
https://access.redhat.com/security/cve/cve-2021-21602
---
This issue has been addressed in the following products:
Red Hat OpenShift Container Platform 4.5
Via RHSA-2021:0429 https://access.redhat.com/errata/RHSA-2021:0429
Bugzilla
CVE-2021-21603 jenkins: XSS vulnerability in notification bar
bugzilla·2021-02-04·CVSS 5.4
CVE-2021-21603 [MEDIUM] CVE-2021-21603 jenkins: XSS vulnerability in notification bar
CVE-2021-21603 jenkins: XSS vulnerability in notification bar
Jenkins 2.274 and earlier, LTS 2.263.1 and earlier does not escape notification bar response contents, resulting in a cross-site scripting (XSS) vulnerability.
Discussion:
This issue has been addressed in the following products:
Red Hat OpenShift Container Platform 4.6
Via RHSA-2021:0423 https://access.redhat.com/errata/RHSA-2021:0423
---
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):
https://access.redhat.com/security/cve/cve-2021-21603
---
This issue has been addressed in the following products:
Red Hat OpenShift Container Platform 4.5
Via RHSA-2021:0429 https://access.redhat.com/errata/RHSA-2021:0429
Bugzilla
CVE-2021-21606 jenkins: Arbitrary file existence check in file fingerprints
bugzilla·2021-02-04·CVSS 4.3
CVE-2021-21606 [MEDIUM] CVE-2021-21606 jenkins: Arbitrary file existence check in file fingerprints
CVE-2021-21606 jenkins: Arbitrary file existence check in file fingerprints
Jenkins 2.274 and earlier, LTS 2.263.1 and earlier improperly validates the format of a provided fingerprint ID when checking for its existence allowing an attacker to check for the existence of XML files with a short path.
Discussion:
This issue has been addressed in the following products:
Red Hat OpenShift Container Platform 4.6
Via RHSA-2021:0423 https://access.redhat.com/errata/RHSA-2021:0423
---
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):
https://access.redhat.com/security/cve/cve-2021-21606
---
This issue has been addressed in the following products:
Red Hat OpenShift Container Platform 4.5
Via RHSA-2021:0429 https://access.redhat.com/erra
2021-09-27
Published