Rewterz
Rewterz Threat Alert – AZORult Malware – IOC’s
February 22, 2021
Rewterz
Rewterz Threat Alert – BabyElephant APT Targeting Pakistani defense Manufacturers
February 22, 2021

Rewterz Threat Advisory – CVE-2021-3411 – Linux Kernel can_optimize function code execution

Severity

Medium

Analysis Summary

CVE-2021-3411

Linux Kernel could allow a local authenticated attacker to execute arbitrary code on the system, caused by a violation of memory access flaw while detecting a padding of int3 in the linking state in can_optimize function in arch/x86/kernel/kprobes/opt.c. By sending a specially-crafted request, an attacker could exploit this vulnerability to execute arbitrary code or cause a denial of service condition on the system.

Impact

Gain Access

Affected Vendors

Linux

Affected Products

Linux Kernel 5.8.0

Remediation

Refer to Linux Kernel Web site for patch, upgrade or suggested workaround information.

Linux Kernel Web site