CVE-2021-0929
published 2021-12-15CVE-2021-0929: In ion_dma_buf_end_cpu_access and related functions of ion.c, there is a possible way to corrupt memory due to a use after free. This could lead to local…
PriorityP340high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.16%
5.3th percentile
In ion_dma_buf_end_cpu_access and related functions of ion.c, there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-187527909References: Upstream kernel
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 5.6.4-1 (bookworm) | linux 5.6.4-1 (bookworm) |
| android | — | — | |
| linux | linux_kernel | >= 0 < 5.6.4-1 | 5.6.4-1 |
| linux | linux_kernel | >= 0 < 5.6.4-1 | 5.6.4-1 |
| linux | linux_kernel | >= 0 < 5.6.4-1 | 5.6.4-1 |
| linux | linux_kernel | >= 0 < 5.6.4-1 | 5.6.4-1 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
osv7.8HIGH
vendor_debian7.8LOW
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
CISA ICS
Siemens SIMATIC
cisa_ics·2024-03-14
Siemens SIMATIC
ICS Advisory
##
Siemens SIMATIC
Release DateMarch 14, 2024
Alert CodeICSA-24-074-07
As of January 10, 2023, CISA will no longer be updating ICS security advisories for Siemens product vulnerabilities beyond the initial advisory. For the most up-to-date information on vulnerabilities in this advisory, please see Siemens' ProductCERT Security Advisories (CERT Services | Services | Siemens Global).
View CSAF
## 1. EXECUTIVE SUMMARY
- CVSS v3 9.8
- ATTENTION: Exploitable remotely/low attack complexity
- Vendor: Siemens
- Equipment: SIMATIC
- Vulnerabilities: Improper Restriction of Operations within the Bounds of a Memory Buffer, Improper Input Validation, Missing Encryption of Sensitive Data, Incorrect Permission Assignment for Critical Resource, Expected Beha
Android
CVE-2021-0929: ION
vendor_android·2021-11-01·CVSS 7.8
CVE-2021-0929 [HIGH] CVE-2021-0929: ION
Android Security Bulletin 2021-11-01
CVE: CVE-2021-0929
Severity: HIGH
Type: EoP
Component: ION
References: A-187527909
Upstream kernel [2] [3]
Red Hat
kernel: use-after-free in ion_dma_buf_end_cpu_access and related functions in ion.c
vendor_redhat·2021-07-28·CVSS 7.8
CVE-2021-0929 [HIGH] CWE-416 kernel: use-after-free in ion_dma_buf_end_cpu_access and related functions in ion.c
kernel: use-after-free in ion_dma_buf_end_cpu_access and related functions in ion.c
In ion_dma_buf_end_cpu_access and related functions of ion.c, there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-187527909References: Upstream kernel
A use-after-free flaw was found in the Linux kernel Android driver ion/ion.c. The driver is not included in the other kernels, apart from Android devices. This issue could allow a local user to crash the system or potentially escalate their privileges on the system.
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red
Debian
CVE-2021-0929: linux - In ion_dma_buf_end_cpu_access and related functions of ion.c, there is a possibl...
vendor_debian·2021·CVSS 7.8
CVE-2021-0929 [HIGH] CVE-2021-0929: linux - In ion_dma_buf_end_cpu_access and related functions of ion.c, there is a possibl...
In ion_dma_buf_end_cpu_access and related functions of ion.c, there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-187527909References: Upstream kernel
Scope: local
bookworm: resolved (fixed in 5.6.4-1)
bullseye: resolved (fixed in 5.6.4-1)
forky: resolved (fixed in 5.6.4-1)
sid: resolved (fixed in 5.6.4-1)
trixie: resolved (fixed in 5.6.4-1)
GHSA
GHSA-g4fj-qffq-f9vx: In ion_dma_buf_end_cpu_access and related functions of ion
ghsa_unreviewed·2021-12-16
CVE-2021-0929 [HIGH] CWE-416 GHSA-g4fj-qffq-f9vx: In ion_dma_buf_end_cpu_access and related functions of ion
In ion_dma_buf_end_cpu_access and related functions of ion.c, there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-187527909References: Upstream kernel
OSV
CVE-2021-0929: In ion_dma_buf_end_cpu_access and related functions of ion
osv·2021-12-15·CVSS 7.8
CVE-2021-0929 [HIGH] CVE-2021-0929: In ion_dma_buf_end_cpu_access and related functions of ion
In ion_dma_buf_end_cpu_access and related functions of ion.c, there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-187527909References: Upstream kernel
OSV
CVE-2021-0929: In ion_dma_buf_end_cpu_access and related functions of ion
osv·2021-11-01
CVE-2021-0929 CVE-2021-0929: In ion_dma_buf_end_cpu_access and related functions of ion
In ion_dma_buf_end_cpu_access and related functions of ion.c, there is a possible way to corrupt memory due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2021-12-15
Published