It was discovered that the btrfs file system in the Linux kernel did not properly handle removing a non-existent device id. An attacker with CAPSYSADMIN could use this to cause a denial of service. (CVE-2021-3739)
It was discovered that the Qualcomm IPC Router protocol implementation in the Linux kernel did not properly validate metadata in some situations. A local attacker could use this to cause a denial of service (system crash) or expose sensitive information. (CVE-2021-3743)
It was discovered that the virtual terminal (vt) device implementation in the Linux kernel contained a race condition in its ioctl handling that led to an out-of-bounds read vulnerability. A local attacker could possibly use this to expose sensitive information. (CVE-2021-3753)
It was discovered that the Linux kernel did not properly account for the memory usage of certain IPC objects. A local attacker could use this to cause a denial of service (memory exhaustion). (CVE-2021-3759)
{ "availability": "No subscription required", "binaries": [ { "binary_version": "5.13.0-1017.21", "binary_name": "linux-buildinfo-5.13.0-1017-oem" }, { "binary_version": "5.13.0-1017.21", "binary_name": "linux-headers-5.13.0-1017-oem" }, { "binary_version": "5.13.0-1017.21", "binary_name": "linux-image-unsigned-5.13.0-1017-oem" }, { "binary_version": "5.13.0-1017.21", "binary_name": "linux-image-unsigned-5.13.0-1017-oem-dbgsym" }, { "binary_version": "5.13.0-1017.21", "binary_name": "linux-modules-5.13.0-1017-oem" }, { "binary_version": "5.13.0-1017.21", "binary_name": "linux-oem-5.13-headers-5.13.0-1017" }, { "binary_version": "5.13.0-1017.21", "binary_name": "linux-oem-5.13-tools-5.13.0-1017" }, { "binary_version": "5.13.0-1017.21", "binary_name": "linux-oem-5.13-tools-host" }, { "binary_version": "5.13.0-1017.21", "binary_name": "linux-tools-5.13.0-1017-oem" } ] }