MGASA-2021-0062

Source
https://advisories.mageia.org/MGASA-2021-0062.html
Import Source
https://advisories.mageia.org/MGASA-2021-0062.json
JSON Data
https://api.test.osv.dev/v1/vulns/MGASA-2021-0062
Related
Published
2021-02-01T17:53:46Z
Modified
2022-02-17T18:21:47Z
Summary
Updated kernel-linus packages fix security vulnerability
Details

This kernel-linus update is based on upstream 5.10.12 and fixes at least the following security issue:

An issue was discovered in the Linux kernel through 5.10.11. PI futexes have a kernel stack use-after-free during fault handling, allowing local users to execute code in the kernel (CVE-2021-3347).

For other upstream fixes, see the referenced changelog.

References
Credits

Affected packages

Mageia:7 / kernel-linus

Package

Name
kernel-linus
Purl
pkg:rpm/mageia/kernel-linus?distro=mageia-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.10.12-1.mga7

Ecosystem specific

{
    "section": "core"
}