Wind River Support Network

HomeDefectsLIN10-8368
Fixed

LIN10-8368 : Security Advisory - linux - CVE-2021-20261

Created: Mar 11, 2021    Updated: Apr 1, 2021
Resolved Date: Apr 1, 2021
Found In Version: 10.17.41.1
Severity: Standard
Applicable for: Wind River Linux LTS 17
Component/s: Kernel

Description

A race condition was found in the Linux kernels implementation of the
floppy disk drive controller driver software.  The impact of this issue is
lessened by the fact that the default permissions on the floppy device
(/dev/fd0) are restricted to root.  If the permissions on the device have
changed the impact changes greatly.  In the default configuration root (or
equivalent) permissions are required to attack this flaw.

Fixed in:
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=a0c80efe5956ccce9fe7ae5c78542578c07bc20a

Red Hat Bugzilla:
https://bugzilla.redhat.com/show_bug.cgi?id=1932150

CREATE(Triage):(User=admin) [CVE-2021-20261|https://nvd.nist.gov/vuln/detail/CVE-2021-20261]

CVEs


Live chat
Online