VDB
BDU%3A2021-06409
BDU%3A2021-06409
PUBLISHED
CVSS 6.800000190734863 MEDIUM
Уязвимость функции do_shmat компонента ipc/shm.c ядра операционной системы Linux, связанная с недостаточной проверкой входных данных, позволяющая привилегированному пользователю обойти существующие ограничения безопасности
Risk Scores
CVSS 2.0
6.800000190734863
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Сообщество свободного программного обеспечения, ООО «Открытая мобильная платформа» | Debian GNU/Linux, ОС Аврора (запись в едином реестре российских программ №1543), Linux |
Timeline
- Dec 28, 2021 CVE Published
- Jun 18, 2024 CVE Updated
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
References
- https://cve.omprussia.ru/bb6323 advisory
- http://www.debian.org/security/2017/dsa-3804 url
- http://www.securityfocus.com/bid/96754 url
- http://www.securitytracker.com/id/1037918 url
- http://www.ubuntu.com/usn/usn-3265-1 url
- http://www.ubuntu.com/usn/usn-3265-2 url
- http://www.ubuntu.com/usn/usn-3361-1 url
- https://bugzilla.kernel.org/show_bug.cgi?id=192931 url
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-5669 url
- https://cve.omprussia.ru/bb4321 url
- https://cve.omprussia.ru/bb5322 url
- https://git.kernel.org/cgit/linux/kernel/git/next/linux-next.git/commit/?id=e1d35d4dc7f089e6c9c080d556feedf9c706f0c7 url
- https://github.com/torvalds/linux/commit/95e91b831f87ac8e1f8ed50c14d709089b4e01b8 url
- https://github.com/torvalds/linux/commit/e1d35d4dc7f089e6c9c080d556feedf9c706f0c7 url
- https://kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.1.40 url
- https://kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.10.2 url
- https://kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.4.53 url
- https://kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.9.14 url
- https://security-tracker.debian.org/tracker/CVE-2017-5669 url
- https://ubuntu.com/security/notices/USN-3265-1 url
…and 12 more