Lucene search

K
ubuntucveUbuntu.comUB:CVE-2021-3802
HistoryNov 29, 2021 - 12:00 a.m.

CVE-2021-3802

2021-11-2900:00:00
ubuntu.com
ubuntu.com
54
vulnerability
udisks2
attacker
crafted image/usb
kernel panic
system availability
bugzilla
redhat
cve-2021-3802

CVSS2

6.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:M/Au:S/C:N/I:N/A:C

CVSS3

4.2

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:N/I:N/A:H

EPSS

0.001

Percentile

34.0%

A vulnerability found in udisks2. This flaw allows an attacker to input a
specially crafted image file/USB leading to kernel panic. The highest
threat from this vulnerability is to system availability.

Bugs

CVSS2

6.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:M/Au:S/C:N/I:N/A:C

CVSS3

4.2

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:N/I:N/A:H

EPSS

0.001

Percentile

34.0%