Vulnerabilities > CVE-2021-3753

047910
CVSS 4.7 - MEDIUM
Attack vector
LOCAL
Attack complexity
HIGH
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
local
high complexity
linux
redhat
netapp

Summary

A race problem was seen in the vt_k_ioctl in drivers/tty/vt/vt_ioctl.c in the Linux kernel, which may cause an out of bounds read in vt as the write access to vc_mode is not protected by lock-in vt_ioctl (KDSETMDE). The highest threat from this vulnerability is to data confidentiality.

Vulnerable Configurations

Part Description Count
OS
Linux
4982
OS
Redhat
2
OS
Netapp
6
Application
Netapp
4
Hardware
Netapp
6