Lucene search

K
ubuntucveUbuntu.comUB:CVE-2021-3612
HistoryJul 09, 2021 - 12:00 a.m.

CVE-2021-3612

2021-07-0900:00:00
ubuntu.com
ubuntu.com
29
linux kernel
joystick devices
memory write
vulnerability
system crash
privilege escalation
confidentiality
integrity
system availability

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS

0

Percentile

9.8%

An out-of-bounds memory write flaw was found in the Linux kernel’s joystick
devices subsystem in versions before 5.9-rc1, in the way the user calls
ioctl JSIOCSBTNMAP. This flaw allows a local user to crash the system or
possibly escalate their privileges on the system. The highest threat from
this vulnerability is to confidentiality, integrity, as well as system
availability.

OSVersionArchitecturePackageVersionFilename
ubuntu18.04noarchlinux< 4.15.0-156.163UNKNOWN
ubuntu20.04noarchlinux< 5.4.0-84.94UNKNOWN
ubuntu21.04noarchlinux< 5.11.0-34.36UNKNOWN
ubuntu16.04noarchlinux< 4.4.0-219.252UNKNOWN
ubuntu18.04noarchlinux-aws< 4.15.0-1111.118UNKNOWN
ubuntu20.04noarchlinux-aws< 5.4.0-1056.59UNKNOWN
ubuntu21.04noarchlinux-aws< 5.11.0-1017.18UNKNOWN
ubuntu14.04noarchlinux-aws< 4.4.0-1099.104UNKNOWN
ubuntu16.04noarchlinux-aws< 4.4.0-1135.149UNKNOWN
ubuntu20.04noarchlinux-aws-5.11< 5.11.0-1017.18~20.04.1UNKNOWN
Rows per page:
1-10 of 571

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS

0

Percentile

9.8%