Use After Free vulnerability in nfc sockets in the Linux Kernel before 5.12.4 allows local attackers to elevate their privileges. In typical configurations, the issue can only be triggered by a privileged local user with the CAP_NET_RAW capability.
Fixes

Solution

Apply the following patch: https://git.kernel.org/pub/scm/linux/kernel/git/netdev/net.git/commit/?id=c61760e6940d


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: palo_alto

Published:

Updated: 2024-09-17T03:38:10.572Z

Reserved: 2021-01-06T00:00:00

Link: CVE-2021-23134

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-05-12T23:15:07.707

Modified: 2024-11-21T05:51:16.257

Link: CVE-2021-23134

cve-icon Redhat

Severity : Moderate

Publid Date: 2021-05-04T00:00:00Z

Links: CVE-2021-23134 - Bugzilla

cve-icon OpenCVE Enrichment

No data.