Related Vulnerabilities: CVE-2021-32606  

In the Linux kernel 5.11 through 5.12.2, isotp_setsockopt in net/can/isotp.c allows privilege escalation to root by leveraging a use-after-free. (This does not affect earlier versions that lack CAN ISOTP SF_BROADCAST support.)

Severity Medium

Remote No

Type Privilege escalation

Description

In the Linux kernel 5.11 through 5.12.2, isotp_setsockopt in net/can/isotp.c allows privilege escalation to root by leveraging a use-after-free. (This does not affect earlier versions that lack CAN ISOTP SF_BROADCAST support.)

AVG-1881 linux-hardened 5.11.19.hardened1-1 Medium Vulnerable

AVG-1880 linux-zen 5.12.2.zen2-1 Medium Vulnerable

AVG-1879 linux 5.12.2.arch4-1 Medium Vulnerable

https://www.openwall.com/lists/oss-security/2021/05/11/16