UBUNTU-CVE-2021-3501
Dashboard / Vulnerabilities / UBUNTU-CVE-2021-3501
UBUNTU-CVE-2021-3501
Summary:
Details: A flaw was found in the Linux kernel in versions before 5.12. The value of internal.ndata, in the KVM API, is mapped to an array index, which can be updated by a user process at anytime which could lead to an out-of-bounds write. The highest threat from this vulnerability is to data integrity and system availability.
References: https://ubuntu.com/security/CVE-2021-3501, https://git.kernel.org/linus/04c4f2ee3f68c9a4bf1653d15f1a9a435ae33f7a, https://ubuntu.com/security/notices/USN-4977-1, https://ubuntu.com/security/notices/USN-4983-1, https://www.cve.org/CVERecord?id=CVE-2021-3501
Affected packages
Package
Name: linux-hwe-edge
Purl: pkg:deb/ubuntu/[email protected]~16.04.1?arch=source&distro=xenial
Affected ranges
Type: ECOSYSTEM
Events:
