CVE-2021-3501

CVSS v3.1 7.1 (High)
71% Progress
CVSS v2.0 3.6 (Low)
36% Progress
EPSS 0.04 % (13th)
0.04% Progress
Affected Products 28
Advisories 9

A flaw was found in the Linux kernel in versions before 5.12. The value of internal.ndata, in the KVM API, is mapped to an array index, which can be updated by a user process at anytime which could lead to an out-of-bounds write. The highest threat from this vulnerability is to data integrity and system availability.

Weaknesses
CWE-787
Out-of-bounds Write
CVE Status
PUBLISHED
CNA
Red Hat, Inc.
Published Date
2021-05-06 13:15:12
(3 years ago)
Updated Date
2022-05-13 20:52:55
(2 years ago)

Affected Products

Loading...
Loading...

Configuration #1

AND
    CPE23 From Up To
OR  
  Linux Kernel prior 5.12 version cpe:2.3:o:linux:linux_kernel < 5.12

Configuration #2

AND
    CPE23 From Up To
OR  
  Redhat Enterprise Linux 8.0 cpe:2.3:o:redhat:enterprise_linux:8.0
OR  
  Running on/with
  Redhat Enterprise Linux for Real Time 8 cpe:2.3:o:redhat:enterprise_linux_for_real_time:8
OR  
  Running on/with
  Redhat Enterprise Linux for Real Time For Nfv 8 cpe:2.3:o:redhat:enterprise_linux_for_real_time_for_nfv:8
OR  
  Running on/with
  Redhat Enterprise Linux for Real Time For Nfv Tus 8.4 cpe:2.3:o:redhat:enterprise_linux_for_real_time_for_nfv_tus:8.4
OR  
  Running on/with
  Redhat Enterprise Linux for Real Time Tus 8.4 cpe:2.3:o:redhat:enterprise_linux_for_real_time_tus:8.4

Configuration #3

AND
    CPE23 From Up To
OR  
  Fedoraproject Fedora 33 cpe:2.3:o:fedoraproject:fedora:33

Configuration #4

AND
    CPE23 From Up To
OR  
  Redhat Virtualization 4.0 cpe:2.3:a:redhat:virtualization:4.0
OR  
  Running on/with
  Redhat Virtualization Host 4.0 cpe:2.3:a:redhat:virtualization_host:4.0
OR  
  Running on/with
  Redhat Enterprise Linux 8.0 cpe:2.3:o:redhat:enterprise_linux:8.0

Configuration #5

AND
    CPE23 From Up To
OR  
  Netapp Cloud Backup cpe:2.3:a:netapp:cloud_backup:-
OR  
  Running on/with
  Netapp Solidfire Baseboard Management Controller Firmware cpe:2.3:o:netapp:solidfire_baseboard_management_controller_firmware:-

Configuration #6

AND
    CPE23 From Up To
OR  
  Netapp H300s Firmware cpe:2.3:o:netapp:h300s_firmware:-
OR  
  Running on/with
  Netapp H300s cpe:2.3:h:netapp:h300s:-

Configuration #7

AND
    CPE23 From Up To
OR  
  Netapp H500s Firmware cpe:2.3:o:netapp:h500s_firmware:-
OR  
  Running on/with
  Netapp H500s cpe:2.3:h:netapp:h500s:-

Configuration #8

AND
    CPE23 From Up To
OR  
  Netapp H700s Firmware cpe:2.3:o:netapp:h700s_firmware:-
OR  
  Running on/with
  Netapp H700s cpe:2.3:h:netapp:h700s:-

Configuration #9

AND
    CPE23 From Up To
OR  
  Netapp H300e Firmware cpe:2.3:o:netapp:h300e_firmware:-
OR  
  Running on/with
  Netapp H300e cpe:2.3:h:netapp:h300e:-

Configuration #10

AND
    CPE23 From Up To
OR  
  Netapp H500e Firmware cpe:2.3:o:netapp:h500e_firmware:-
OR  
  Running on/with
  Netapp H500e cpe:2.3:h:netapp:h500e:-

Configuration #11

AND
    CPE23 From Up To
OR  
  Netapp H700e Firmware cpe:2.3:o:netapp:h700e_firmware:-
OR  
  Running on/with
  Netapp H700e cpe:2.3:h:netapp:h700e:-

Configuration #12

AND
    CPE23 From Up To
OR  
  Netapp H410s Firmware cpe:2.3:o:netapp:h410s_firmware:-
OR  
  Running on/with
  Netapp H410s cpe:2.3:h:netapp:h410s:-

Configuration #13

AND
    CPE23 From Up To
OR  
  Netapp H410c Firmware cpe:2.3:o:netapp:h410c_firmware:-
OR  
  Running on/with
  Netapp H410c cpe:2.3:h:netapp:h410c:-
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...