CVE-2021-43267
CVSS v3.1
9.8 (Critical)
CVSS v2.0
7.5 (High)
EPSS
4.76 % (93th)
Affected Products
16
Advisories
13
An issue was discovered in net/tipc/crypto.c in the Linux kernel before 5.14.16. The Transparent Inter-Process Communication (TIPC) functionality allows remote attackers to exploit insufficient validation of user-supplied sizes for the MSG_CRYPTO message type.
Weaknesses
- CWE-1284
- Improper Validation of Specified Quantity in Input
- CVE Status
- PUBLISHED
- CNA
- MITRE
- Published Date
-
2021-11-02 23:15:07
(2 years ago) - Updated Date
-
2023-11-07 03:39:19
(10 months ago)
Affected Products
Loading...
Loading...
Configuration #1
|
Configuration #2
|
Configuration #3
AND |
|
---|
Configuration #4
AND |
|
---|
Configuration #5
AND |
|
---|
Configuration #6
AND |
|
---|
Configuration #7
AND |
|
---|
Configuration #8
AND |
|
---|
Configuration #9
AND |
|
---|
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...