CVE-2021-33033
kernel: use-after-free in cipso_v4_genopt in net/ipv4/cipso_ipv4.c
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
2Exploited in Wild
-Decision
Descriptions
The Linux kernel before 5.11.14 has a use-after-free in cipso_v4_genopt in net/ipv4/cipso_ipv4.c because the CIPSO and CALIPSO refcounting for the DOI definitions is mishandled, aka CID-ad5d07f4a9cd. This leads to writing an arbitrary value.
El kernel de Linux versiones anteriores a 5.11.14, presenta un uso de la memoria previamente liberada en una función cipso_v4_genopt en el archivo net/ipv4/cipso_ipv4.c, porque el recuento de CIPSO y CALIPSO para las definiciones DOI es manejado inapropiadamente, también se conoce como CID-ad5d07f4a9cd. Esto conlleva a escribir un valor arbitrario
A flaw use-after-free in the Linux kernel CIPSO network packet labeling protocol functionality was found in the way user open local network connection with the usage of the security labeling that is IP option number 134. A local user could use this flaw to crash the system or possibly escalate their privileges on the system.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2021-05-14 CVE Reserved
- 2021-05-14 CVE Published
- 2024-08-03 CVE Updated
- 2024-08-03 First Exploit
- 2024-09-16 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-416: Use After Free
CAPEC
References (8)
URL | Tag | Source |
---|
URL | Date | SRC |
---|---|---|
https://sites.google.com/view/syzscope/kasan-use-after-free-read-in-cipso_v4_genopt | 2024-08-03 | |
https://syzkaller.appspot.com/bug?id=96e7d345748d8814901c91cd92084ed04b46701e | 2024-08-03 |
URL | Date | SRC |
---|---|---|
https://access.redhat.com/security/cve/CVE-2021-33033 | 2021-11-09 | |
https://bugzilla.redhat.com/show_bug.cgi?id=1961300 | 2021-11-09 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Linux Search vendor "Linux" | Linux Kernel Search vendor "Linux" for product "Linux Kernel" | < 5.11.14 Search vendor "Linux" for product "Linux Kernel" and version " < 5.11.14" | - |
Affected
|