Updated: 2023-11-04 20:03:39.285783
Description:
An issue was discovered in the Linux kernel before 5.11.7. usbip_sockfd_store in drivers/usb/usbip/stub_dev.c allows attackers to cause a denial of service (GPF) because the stub-up sequence has race conditions during an update of the local and shared status, aka CID-9380afd6df70.
Links | NIST | CIRCL | RHEL | Ubuntu |
Severity | Score | |
---|---|---|
CVSS Version 2.x | MEDIUM | 4.7 |
CVSS Version 3.x | MEDIUM | 4.7 |
OS name | Project name | Version | Score | Severity | Status | Errata | Last updated |
---|---|---|---|---|---|---|---|
CentOS 6 ELS | kernel | 2.6.32 | 4.7 | MEDIUM | Not Vulnerable | 2021-11-02 14:03:28 | |
CentOS 7 ELS | kernel | 3.10.0 | 4.7 | MEDIUM | Ignored | 2023-09-19 09:30:10 | |
CentOS 8.4 ELS | kernel | 4.18.0 | 4.7 | MEDIUM | Ignored | 2022-02-10 08:36:35 | |
CentOS 8.5 ELS | kernel | 4.18.0 | 4.7 | MEDIUM | Ignored | 2022-02-21 05:39:39 | |
CloudLinux 6 ELS | kernel | 2.6.32 | 4.7 | MEDIUM | Ignored | 2022-01-27 11:20:18 | |
Oracle Linux 6 ELS | kernel | 2.6.32 | 4.7 | MEDIUM | Ignored | 2022-01-27 11:20:18 | |
Ubuntu 16.04 ELS | linux | 4.4.0 | 4.7 | MEDIUM | Not Vulnerable | 2021-11-02 14:03:28 | |
Ubuntu 16.04 ELS | linux-hwe | 4.15.0 | 4.7 | MEDIUM | Already Fixed | 2022-09-28 05:02:43 | |
Ubuntu 18.04 ELS | linux | 4.15.0 | 4.7 | MEDIUM | Ignored | 2023-03-02 04:04:09 |