PT-2021-25392 · Linux · Linux Kernel
Published
2021-06-30
·
Updated
2021-06-30
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions:
Linux Kernel versions prior to v5.4.128
Description:
The issue concerns an out-of-bounds read in the
qrtr endpoint post function. It was introduced in version v4.15 and fixed in version v5.4.128. The actual impact and attack plausibility have not yet been proven.Recommendations:
For versions prior to v5.4.128, update to version v5.4.128 or later to resolve the issue. As a temporary workaround, consider restricting access to the
qrtr endpoint post function until a patch is available. Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linux Kernel