CVE-2021-23134
Use After Free vulnerability in nfc sockets in the Linux Kernel before 5.12.4 allows local attackers to elevate their privileges. In typical configurations, the issue can only be triggered by a privileged local user with the CAP_NET_RAW capability.
- Affected products
- Alt Linux, Linuxmint, Linux Kernel, Suse, Ubuntu
- Netapp Cloud Backup
- All versions
- Fix
- Available
- CVSS 3.1
- 7.8 HIGH
- EPSS
- 0.4% (30th percentile)
- Weakness
- CWE-416
- NVD status
- Analyzed
- Published
- 2021-05-12
Fix
Apply the following patch: https://git.kernel.org/pub/scm/linux/kernel/git/netdev/net.git/commit/?id=c61760e6940d
CVE-2021-23134 at NVD
No indexed exploits for CVE-2021-23134 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2021-23134 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.