Skip to content

kernel CVE-2021-27363

Moderate
tjkirch published GHSA-mxrv-mrmf-6ccr Apr 12, 2021

Package

kernel (bottlerocket)

Affected versions

< 1.0.8

Patched versions

1.0.8

Description

A flaw was found in the way access to sessions and handles was handled in the iSCSI driver in the Linux kernel. A local user could use this flaw to leak iSCSI transport handle kernel address or end arbitrary iSCSI connections on the system.

Severity

Moderate

CVE ID

CVE-2021-27363

Weaknesses

No CWEs