CVE-2021-23133Race Condition in Kernel

CWE-362Race Condition22 documents10 sources
Severity
7.0HIGHNVD
CNA6.7OSV3.5
EPSS
0.1%
top 73.98%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 22
Latest updateFeb 14

Description

A race condition in Linux kernel SCTP sockets (net/sctp/socket.c) before 5.12-rc8 can lead to kernel privilege escalation from the context of a network service or an unprivileged process. If sctp_destroy_sock is called without sock_net(sk)->sctp.addr_wq_lock then an element is removed from the auto_asconf_splist list without any proper locking. This can be exploited by an attacker with network service privileges to escalate to root or from the context of an unprivileged user directly if a BPF_CG

CVSS vector

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.0 | Impact: 5.9

Affected Packages5 packages

NVDlinux/linux_kernel4.104.14.232+4
CVEListV5linux_kernel/linux_kernelunspecified5.12-rc8
Debianlinux/linux_kernel< 5.10.38-1+3
Ubuntulinux/linux_kernel< 4.15.0-147.151+1
Palo Altopaloalto/pan-os

Also affects: Debian Linux 9.0, Fedora 32, 33, 34

Patches

🔴Vulnerability Details

10
GHSA
GHSA-hp5q-cmxv-w64v: A race condition in Linux kernel SCTP sockets (net/sctp/socket2022-05-24
OSV
linux-kvm vulnerabilities2021-06-25
OSV
linux-oem-5.10 vulnerabilities2021-06-23
OSV
linux, linux-aws, linux-aws-5.8, linux-azure, linux-azure-5.8, linux-gcp, linux-gcp-5.8, linux-hwe-5.8, linux-kvm, linux-oracle, linux-oracle-5.8, linux-raspi vulnerabilities2021-06-23
OSV
linux, linux-aws, linux-aws-5.4, linux-azure, linux-azure-5.4, linux-gcp, linux-gcp-5.4, linux-gke, linux-gke-5.4, linux-gkeop, linux-gkeop-5.4, linux-hwe-5.4, linux-oracle, linux-oracle-5.4, linux-ra2021-06-23

📋Vendor Advisories

11
Palo Alto
PAN-SA-2024-0001 Informational Bulletin: Impact of OSS CVEs in PAN-OS2024-02-14
Ubuntu
Linux kernel (KVM) vulnerabilities2021-06-25
Ubuntu
Linux kernel (KVM) vulnerabilities2021-06-25
Ubuntu
Linux kernel vulnerabilities2021-06-23
Ubuntu
Linux kernel (OEM) vulnerabilities2021-06-23