CVE-2021-43267

CVSS v3.1 9.8 (Critical)
98% Progress
CVSS v2.0 7.5 (High)
75% Progress
EPSS 4.76 % (93th)
4.76% Progress
Affected Products 16
Advisories 13

An issue was discovered in net/tipc/crypto.c in the Linux kernel before 5.14.16. The Transparent Inter-Process Communication (TIPC) functionality allows remote attackers to exploit insufficient validation of user-supplied sizes for the MSG_CRYPTO message type.

Weaknesses
CWE-1284
Improper Validation of Specified Quantity in Input
CVE Status
PUBLISHED
CNA
MITRE
Published Date
2021-11-02 23:15:07
(2 years ago)
Updated Date
2023-11-07 03:39:19
(10 months ago)

Affected Products

Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Linux Kernel from 5.10 version and prior 5.10.77 version cpe:2.3:o:linux:linux_kernel >= 5.10 < 5.10.77
  Linux Kernel from 5.11 version and prior 5.14.16 version cpe:2.3:o:linux:linux_kernel >= 5.11 < 5.14.16

Configuration #2

    CPE23 From Up To
  Fedoraproject Fedora 34 cpe:2.3:o:fedoraproject:fedora:34
  Fedoraproject Fedora 35 cpe:2.3:o:fedoraproject:fedora:35

Configuration #3

AND
    CPE23 From Up To
OR  
  Netapp H300s cpe:2.3:h:netapp:h300s:-
OR  
  Running on/with
  Netapp H300s Firmware cpe:2.3:o:netapp:h300s_firmware:-

Configuration #4

AND
    CPE23 From Up To
OR  
  Netapp H500s cpe:2.3:h:netapp:h500s:-
OR  
  Running on/with
  Netapp H500s Firmware cpe:2.3:o:netapp:h500s_firmware:-

Configuration #5

AND
    CPE23 From Up To
OR  
  Netapp H700s cpe:2.3:h:netapp:h700s:-
OR  
  Running on/with
  Netapp H700s Firmware cpe:2.3:o:netapp:h700s_firmware:-

Configuration #6

AND
    CPE23 From Up To
OR  
  Netapp H300e cpe:2.3:h:netapp:h300e:-
OR  
  Running on/with
  Netapp H300e Firmware cpe:2.3:o:netapp:h300e_firmware:-

Configuration #7

AND
    CPE23 From Up To
OR  
  Netapp H500e cpe:2.3:h:netapp:h500e:-
OR  
  Running on/with
  Netapp H500e Firmware cpe:2.3:o:netapp:h500e_firmware:-

Configuration #8

AND
    CPE23 From Up To
OR  
  Netapp H700e cpe:2.3:h:netapp:h700e:-
OR  
  Running on/with
  Netapp H700e Firmware cpe:2.3:o:netapp:h700e_firmware:-

Configuration #9

AND
    CPE23 From Up To
OR  
  Netapp H410s cpe:2.3:h:netapp:h410s:-
OR  
  Running on/with
  Netapp H410s Firmware cpe:2.3:o:netapp:h410s_firmware:-
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...