CVE-2021-28375

Related Vulnerabilities: CVE-2021-28375  

An issue was discovered in the Linux kernel through 5.11.6. fastrpc_internal_invoke in drivers/misc/fastrpc.c does not prevent user applications from sending kernel RPC messages, aka CID-20c40794eb85. This is a related issue to CVE-2019-2308.

Description

The MITRE CVE dictionary describes this issue as:

An issue was discovered in the Linux kernel through 5.11.6. fastrpc_internal_invoke in drivers/misc/fastrpc.c does not prevent user applications from sending kernel RPC messages, aka CID-20c40794eb85. This is a related issue to CVE-2019-2308.

Additional Information

  • Bugzilla 1939164: CVE-2021-28375 kernel: fastrpc_internal_invoke in drivers/misc/fastrpc.c does not prevent user applications from sending kernel RPC messages
  • CWE-862: Missing Authorization
  • FAQ: Frequently asked questions about CVE-2021-28375