CVE-2021-39648
published 2021-12-15CVE-2021-39648: In gadget_dev_desc_UDC_show of configfs.c, there is a possible disclosure of kernel heap memory due to a race condition. This could lead to local information…
PriorityP415medium4.1CVSS 3.1
AVLACHPRHUINSUCHINAN
EPSS
0.16%
5.8th percentile
In gadget_dev_desc_UDC_show of configfs.c, there is a possible disclosure of kernel heap memory due to a race condition. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-160822094References: Upstream kernel
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 5.10.9-1 (bookworm) | linux 5.10.9-1 (bookworm) |
| linux | linux_kernel | >= 0 < 5.10.9-1 | 5.10.9-1 |
| linux | linux_kernel | >= 0 < 5.10.9-1 | 5.10.9-1 |
| linux | linux_kernel | >= 0 < 5.10.9-1 | 5.10.9-1 |
| linux | linux_kernel | >= 0 < 5.10.9-1 | 5.10.9-1 |
| linux | linux_kernel | >= 0 < 4.4.0-222.255 | 4.4.0-222.255 |
CVSS provenance
nvdv3.14.1MEDIUMCVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:N/A:N
nvdv2.01.9LOWAV:L/AC:M/Au:N/C:P/I:N/A:N
osv7.8HIGH
vendor_ubuntu7.8HIGH
vendor_debian4.1MEDIUM
vendor_redhat4.1MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2022-03-22·CVSS 7.8
CVE-2020-25673 [HIGH] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
Yiqi Sun and Kevin Wang discovered that the cgroups implementation in the
Linux kernel did not properly restrict access to the cgroups v1
release_agent feature. A local attacker could use this to gain
administrative privileges. (CVE-2022-0492)
It was discovered that the aufs file system in the Linux kernel did not
properly restrict mount namespaces, when mounted with the non-default
allow_userns option set. A local attacker could use this to gain
administrative privileges. (CVE-2016-2853)
It was discovered that the aufs file system in the Linux kernel did not
properly maintain POSIX ACL xattr data, when mounted with the non-default
allow_userns option. A local attacker could possibly us
Red Hat
kernel: possible disclosure of memory due to a race condition in gadget_dev_desc_UDC_show() of configfs.c
vendor_redhat·2021-01-06·CVSS 4.1
CVE-2021-39648 [MEDIUM] CWE-362 kernel: possible disclosure of memory due to a race condition in gadget_dev_desc_UDC_show() of configfs.c
kernel: possible disclosure of memory due to a race condition in gadget_dev_desc_UDC_show() of configfs.c
In gadget_dev_desc_UDC_show of configfs.c, there is a possible disclosure of kernel heap memory due to a race condition. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-160822094References: Upstream kernel
Statement: There was no shipped kernel version that was seen affected by this problem. These files are not built in our source code.
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Ha
Debian
CVE-2021-39648: linux - In gadget_dev_desc_UDC_show of configfs.c, there is a possible disclosure of ker...
vendor_debian·2021·CVSS 4.1
CVE-2021-39648 [MEDIUM] CVE-2021-39648: linux - In gadget_dev_desc_UDC_show of configfs.c, there is a possible disclosure of ker...
In gadget_dev_desc_UDC_show of configfs.c, there is a possible disclosure of kernel heap memory due to a race condition. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-160822094References: Upstream kernel
Scope: local
bookworm: resolved (fixed in 5.10.9-1)
bullseye: resolved (fixed in 5.10.9-1)
forky: resolved (fixed in 5.10.9-1)
sid: resolved (fixed in 5.10.9-1)
trixie: resolved (fixed in 5.10.9-1)
OSV
linux, linux-aws, linux-kvm, linux-lts-xenial vulnerabilities
osv·2022-03-22·CVSS 7.8
CVE-2022-0492 [HIGH] linux, linux-aws, linux-kvm, linux-lts-xenial vulnerabilities
linux, linux-aws, linux-kvm, linux-lts-xenial vulnerabilities
Yiqi Sun and Kevin Wang discovered that the cgroups implementation in the
Linux kernel did not properly restrict access to the cgroups v1
release_agent feature. A local attacker could use this to gain
administrative privileges. (CVE-2022-0492)
It was discovered that the aufs file system in the Linux kernel did not
properly restrict mount namespaces, when mounted with the non-default
allow_userns option set. A local attacker could use this to gain
administrative privileges. (CVE-2016-2853)
It was discovered that the aufs file system in the Linux kernel did not
properly maintain POSIX ACL xattr data, when mounted with the non-default
allow_userns option. A local attacker could possibly use this to gain
elevated privileges. (CVE
GHSA
GHSA-rcw4-4c2j-r7wh: In gadget_dev_desc_UDC_show of configfs
ghsa_unreviewed·2021-12-16
CVE-2021-39648 [MEDIUM] CWE-668 GHSA-rcw4-4c2j-r7wh: In gadget_dev_desc_UDC_show of configfs
In gadget_dev_desc_UDC_show of configfs.c, there is a possible disclosure of kernel heap memory due to a race condition. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-160822094References: Upstream kernel
OSV
CVE-2021-39648: In gadget_dev_desc_UDC_show of configfs
osv·2021-12-15·CVSS 4.1
CVE-2021-39648 [MEDIUM] CVE-2021-39648: In gadget_dev_desc_UDC_show of configfs
In gadget_dev_desc_UDC_show of configfs.c, there is a possible disclosure of kernel heap memory due to a race condition. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-160822094References: Upstream kernel
OSV
CVE-2021-39648: In gadget_dev_desc_UDC_show of configfs
osv·2021-12-01
CVE-2021-39648 CVE-2021-39648: In gadget_dev_desc_UDC_show of configfs
In gadget_dev_desc_UDC_show of configfs.c, there is a possible disclosure of kernel heap memory due to a race condition. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2021-12-15
Published