Aller au contenu

Fiche vulnérabilité

CVE-2021-43267 : faille critique linux linux kernel (CVSS 9.8)

Description

An issue was discovered in net/tipc/crypto.c in the Linux kernel before 5.14.16. The Transparent Inter-Process Communication (TIPC) functionality allows remote attackers to exploit insufficient validation of user-supplied sizes for the MSG_CRYPTO message type.

En bref

Sévérité
Critique (CVSS 9.8)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
2 nov. 2021
Dernière mise à jour
17 juin 2026

Produits concernés

  • linux linux kernel
  • fedoraproject fedora
  • netapp h300s firmware
  • netapp h500s firmware
  • netapp h700s firmware
  • netapp h300e firmware
  • netapp h500e firmware
  • netapp h700e firmware
  • netapp h410s firmware

Références

Rechercher une autre vulnérabilité dans la base CVE