An out-of-bounds memory write flaw was found in the Linux kernel's joystick devices subsystem in versions before 5.9-rc1, in the way the user calls ioctl JSIOCSBTNMAP. This flaw allows a local user to crash the system or possibly escalate their privileges on the system. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-2785-1 | linux-4.19 security update |
Debian DLA |
DLA-2843-1 | linux security update |
EUVD |
EUVD-2021-26916 | An out-of-bounds memory write flaw was found in the Linux kernel's joystick devices subsystem in versions before 5.9-rc1, in the way the user calls ioctl JSIOCSBTNMAP. This flaw allows a local user to crash the system or possibly escalate their privileges on the system. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability. |
Ubuntu USN |
USN-5070-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-5071-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-5071-2 | Linux kernel (HWE) vulnerabilities |
Ubuntu USN |
USN-5071-3 | Linux kernel (Raspberry Pi) vulnerabilities |
Ubuntu USN |
USN-5073-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-5073-2 | Linux kernel (GCP) vulnerabilities |
Ubuntu USN |
USN-5073-3 | Linux kernel (Raspberry Pi) vulnerabilities |
Ubuntu USN |
USN-5096-1 | Linux kernel (OEM) vulnerabilities |
Ubuntu USN |
USN-5106-1 | Linux kernel (OEM) vulnerabilities |
Ubuntu USN |
USN-5120-1 | Linux kernel (Azure) vulnerabilities |
Ubuntu USN |
USN-5299-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-5343-1 | Linux kernel vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-03T17:01:07.361Z
Reserved: 2021-06-21T00:00:00
Link: CVE-2021-3612
No data.
Status : Modified
Published: 2021-07-09T11:15:09.457
Modified: 2024-11-21T06:21:58.743
Link: CVE-2021-3612
OpenCVE Enrichment
No data.
Debian DLA
EUVD
Ubuntu USN