Aller au contenu

Fiche vulnérabilité

CVE-2021-22556 : faille moyenne Google LLC Fuchsia Kernel (CVSS 5.3)

Description

The Security Team discovered an integer overflow bug that allows an attacker with code execution to issue memory cache invalidation operations on pages that they don’t own, allowing them to control kernel memory from userspace. We recommend upgrading to kernel version 4.1 or beyond.

En bref

Sévérité
Moyenne (CVSS 5.3)
Vecteur CVSS
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:L/A:N
Exploitation active
Non signalée par la CISA
Publication
3 mai 2022
Dernière mise à jour
21 avr. 2025

Produits concernés

  • Google LLC Fuchsia Kernel

Références

Rechercher une autre vulnérabilité dans la base CVE