Related Vulnerabilities: CVE-2021-3483  

A security issue has been found in the Linux kernel in Linux/drivers/firewire/nosy.c. Nosy is an IEEE 1394 packet sniffer which is used for protocol analysis and in the development of IEEE 1394 drivers, applications, or firmware. Incorrect handling of elements in a doubly linked list when opening nosy devices can lead to use after free.

Severity Medium

Remote No

Type Arbitrary code execution

Description

A security issue has been found in the Linux kernel in Linux/drivers/firewire/nosy.c. Nosy is an IEEE 1394 packet sniffer which is used for protocol analysis and in the development of IEEE 1394 drivers, applications, or firmware. Incorrect handling of elements in a doubly linked list when opening nosy devices can lead to use after free.

AVG-1767 linux-lts 5.10.27-1 Medium Vulnerable

AVG-1766 linux-zen 5.11.11.zen1-1 Medium Vulnerable

AVG-1765 linux-hardened 5.11.11.hardened1-1 Medium Vulnerable

AVG-1764 linux 5.11.11.arch4-1 Medium Vulnerable

https://www.openwall.com/lists/oss-security/2021/04/07/1
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=829933ef05a951c8ff140e814656d73e74915faf