7.8
CVSSv3

CVE-2021-42008

Published: 05/10/2021 Updated: 12/05/2023
CVSS v2 Base Score: 6.9 | Impact Score: 10 | Exploitability Score: 3.4
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 615
Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

The decode_data function in drivers/net/hamradio/6pack.c in the Linux kernel prior to 5.13.13 has a slab out-of-bounds write. Input from a process that has the CAP_NET_ADMIN capability can lead to root access.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel

netapp h300s_firmware -

netapp h500s_firmware -

netapp h700s_firmware -

netapp h300e_firmware -

netapp h500e_firmware -

netapp h700e_firmware -

netapp h410s_firmware -

netapp h410c_firmware -

netapp solidfire_baseboard_management_controller_firmware -

debian debian linux 9.0

Vendor Advisories

Several security issues were fixed in the Linux kernel ...
Several security issues were fixed in the Linux kernel ...

Github Repositories

Exploiting A 16-Year-Old Vulnerability In The Linux 6pack Driver

CVE-2021-42008 Exploiting A 16-Year-Old Vulnerability In The Linux 6pack Driver Reference syst3mfailureio/sixpack-slab-out-of-bounds

CVE-2021-42008: Exploiting A 16-Year-Old Vulnerability In The Linux 6pack Driver

CVE-2021-42008 CVE-2021-42008: Exploiting A 16-Year-Old Vulnerability In The Linux 6pack Driver Vulnera

Awesome Stars A curated list of my GitHub stars! Generated by starred Contents AGS Script ASL ActionScript Adblock Filter List Agda Assembly AutoHotkey AutoIt Awk Batchfile C C# C++ CSS CoffeeScript Common Lisp Crystal D DIGITAL Command Language Dart Dockerfile Emacs Lisp F# GAP GDScript GLSL Go Groovy HLSL HTML Haskell HolyC Java JavaScript Julia Jupyter Notebook Just Kak