Lucene search

K
cvelistRedhatCVELIST:CVE-2021-3847
HistoryApr 01, 2022 - 10:17 p.m.

CVE-2021-3847

2022-04-0122:17:29
CWE-281
redhat
www.cve.org
1

7.6 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

An unauthorized access to the execution of the setuid file with capabilities flaw in the Linux kernel OverlayFS subsystem was found in the way user copying a capable file from a nosuid mount into another mount. A local user could use this flaw to escalate their privileges on the system.

CNA Affected

[
  {
    "product": "kernel",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "all versions up to, including, kernel 5.17"
      }
    ]
  }
]

7.6 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%