Vulnerabilities > CVE-2021-3501

047910
CVSS 7.1 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
NONE
Integrity impact
HIGH
Availability impact
HIGH

Summary

A flaw was found in the Linux kernel in versions before 5.12. The value of internal.ndata, in the KVM API, is mapped to an array index, which can be updated by a user process at anytime which could lead to an out-of-bounds write. The highest threat from this vulnerability is to data integrity and system availability.

Vulnerable Configurations

Part Description Count
OS
Linux
4890
OS
Redhat
5
OS
Fedoraproject
1
OS
Netapp
9
Application
Redhat
2
Application
Netapp
1
Hardware
Netapp
8