An out-of-bounds (OOB) memory write flaw was found in list_devices in drivers/md/dm-ioctl.c in the Multi-device driver module in the Linux kernel before 5.12. A bound check failure allows an attacker with special user (CAP_SYS_ADMIN) privilege to gain access to out-of-bounds memory leading to a system crash or a leak of internal kernel information. The highest threat from this vulnerability is to system availability.
Advisories
Source ID Title
Debian DLA Debian DLA DLA-2689-1 linux security update
Debian DLA Debian DLA DLA-2690-1 linux-4.19 security update
EUVD EUVD EUVD-2021-18791 An out-of-bounds (OOB) memory write flaw was found in list_devices in drivers/md/dm-ioctl.c in the Multi-device driver module in the Linux kernel before 5.12. A bound check failure allows an attacker with special user (CAP_SYS_ADMIN) privilege to gain access to out-of-bounds memory leading to a system crash or a leak of internal kernel information. The highest threat from this vulnerability is to system availability.
Ubuntu USN Ubuntu USN USN-4948-1 Linux kernel (OEM) vulnerabilities
Ubuntu USN Ubuntu USN USN-4979-1 Linux kernel vulnerabilities
Ubuntu USN Ubuntu USN USN-4982-1 Linux kernel vulnerabilities
Ubuntu USN Ubuntu USN USN-4984-1 Linux kernel vulnerabilities
Ubuntu USN Ubuntu USN USN-5361-1 Linux kernel vulnerabilities
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2024-08-03T23:10:30.921Z

Reserved: 2021-04-29T00:00:00

Link: CVE-2021-31916

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-05-06T17:15:08.143

Modified: 2024-11-21T06:06:30.307

Link: CVE-2021-31916

cve-icon Redhat

Severity : Low

Publid Date: 2021-03-29T00:00:00Z

Links: CVE-2021-31916 - Bugzilla

cve-icon OpenCVE Enrichment

No data.