CVE-2021-29265

Related Vulnerabilities: CVE-2021-29265  

A flaw was found in the Linux kernel. The usbip driver allows attackers to cause a denial of service (GPF) because the stub-up sequence has race conditions during an update of the local and shared status. The highest threat from this vulnerability is to system availability.

Description

A flaw was found in the Linux kernel. The usbip driver allows attackers to cause a denial of service (GPF) because the stub-up sequence has race conditions during an update of the local and shared status. The highest threat from this vulnerability is to system availability.

Additional Information

  • Bugzilla 1944695: CVE-2021-29265 kernel: race conditions in usbip_sockfd_store function in drivers/usb/usbip/stub_dev.c can lead to DoS
  • CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
  • FAQ: Frequently asked questions about CVE-2021-29265