Rewterz
Rewterz Threat Alert – Microsoft Outlook and SharePoint Web Phishing – IOCs
May 27, 2021
Rewterz
Rewterz Threat Advisory – Multiple Google Chrome Code Execution Vulnerabilities
May 27, 2021

Rewterz Threat Advisory – CVE-2021-22543 – Linux Kernel Privilege Escalation

Severity

High

Analysis Summary

CVE-2021-22543

Linux Kernel could allow a locally authenticated attacker to gain elevated privileges on the system, caused by improper handling of VM_IO|VM_PFNMAP vmas in KVM. By sending a specially-crafted request, an authenticated attacker could exploit this vulnerability to gain elevated privileges to start and control a VM to read/write random pages of memory.

Impact

Unauthorized Access

Affected Vendors

Linux

Affected Products

Linux Kernel

Remediation

Refer to Linux Kernel GIT Repository for the patch, upgrade, or suggested workaround information.  Linux Kernel Web site