PT-2021-2247 · Linux+8 · Linux Kernel+8

Published

2021-03-04

·

Updated

2026-02-20

·

CVE-2021-27365

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 5.11.4 Linux kernel versions prior to 5.10.21 Linux kernel versions prior to 5.4.103 Linux kernel versions prior to 4.19.179 Linux kernel versions prior to 4.14.224 Linux kernel versions prior to 4.9.260 Linux kernel versions prior to 4.4.260
Description An issue was discovered in the Linux kernel where certain iSCSI data structures do not have appropriate length constraints or checks, and can exceed the PAGE SIZE value. An unprivileged user can send a Netlink message that is associated with iSCSI, and has a length up to the maximum length of a Netlink message. This can lead to a heap buffer overflow, allowing an attacker to execute code at the kernel level and gain root privileges. The vulnerability is related to errors in access control in the show transport handle function.
Recommendations For Linux kernel versions prior to 5.11.4, update to version 5.11.4 or later. For Linux kernel versions prior to 5.10.21, update to version 5.10.21 or later. For Linux kernel versions prior to 5.4.103, update to version 5.4.103 or later. For Linux kernel versions prior to 4.19.179, update to version 4.19.179 or later. For Linux kernel versions prior to 4.14.224, update to version 4.14.224 or later. For Linux kernel versions prior to 4.9.260, update to version 4.9.260 or later. For Linux kernel versions prior to 4.4.260, update to version 4.4.260 or later. As a temporary workaround, consider restricting access to the iSCSI subsystem until a patch is available.

Exploit

Fix

Heap Based Buffer Overflow

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2021:1093
ALT-PU-2021-1447
ALT-PU-2021-1525
ALT-PU-2021-1869
ALT-PU-2021-1888
ALT-PU-2021-1896
ALT-PU-2022-1240
ALT-PU-2022-1419
ALT-PU-2022-1421
ALT-PU-2023-1814
AZL-6534
BDU:2021-01218
BDU:2021-01666
CESA-2021_1071
CESA-2021_1081
CESA-2021_1093
CVE-2021-27365
DLA-2586-1
DLA-2610-1
MGASA-2021-0151
MGASA-2021-0152
OESA-2021-1111
OPENSUSE-SU-2021:0532-1
OPENSUSE-SU-2021:0758-1
OPENSUSE-SU-2021:1975-1
OPENSUSE-SU-2021:1977-1
OPENSUSE-SU-2021_0532-1
OPENSUSE-SU-2021_0758-1
OPENSUSE-SU-2021_1975-1
OPENSUSE-SU-2021_1977-1
RHSA-2021:1069
RHSA-2021:1070
RHSA-2021:1071
RHSA-2021:1081
RHSA-2021:1093
RHSA-2021:1171
RHSA-2021:1173
RHSA-2021:1267
RHSA-2021:1272
RHSA-2021:1279
RHSA-2021:1288
RHSA-2021:1289
RHSA-2021:1295
RHSA-2021:1373
RHSA-2021:1376
RHSA-2021:1377
RHSA-2021:1379
RHSA-2021:1531
RHSA-2021:1532
RHSA-2021_1070
RHSA-2021_1071
RHSA-2021_1081
RHSA-2021_1093
RHSA-2021_1288
SUSE-SU-2021:1046-1
SUSE-SU-2021:1074-1
SUSE-SU-2021:1075-1
SUSE-SU-2021:1145-1
SUSE-SU-2021:1148-1
SUSE-SU-2021:1175-1
SUSE-SU-2021:1176-1
SUSE-SU-2021:1177-1
SUSE-SU-2021:1210-1
SUSE-SU-2021:1211-1
SUSE-SU-2021:1238-1
SUSE-SU-2021:14724-1
SUSE-SU-2021:1573-1
SUSE-SU-2021:1596-1
SUSE-SU-2021:1617-1
SUSE-SU-2021:1623-1
SUSE-SU-2021:1624-1
SUSE-SU-2021:1625-1
SUSE-SU-2021:1975-1
SUSE-SU-2021:1977-1
SUSE-SU-2021:2577-1
SUSE-SU-2021_14724-1
USN-4883-1
USN-4887-1
USN-4889-1
USN-4901-1

Affected Products

Alt Linux
Almalinux
Centos
Linuxmint
Linux Kernel
Red Hat
Red Os
Suse
Ubuntu