THREAT OPS › Threat News › [NVD] CVE-2021-23133 (MEDIUM 6.7) — A race condition in Linux kernel SCTP sockets (net/sctp/socket.c) before 5.12-rc8 can lead to kernel privilege escalation from the context of a network service or an unprivileged process. If sctp_destroy_sock is called without sock_net(sk)->sctp.addr_wq_lock then an element is re
[NVD] CVE-2021-23133 (MEDIUM 6.7) — A race condition in Linux kernel SCTP sockets (net/sctp/socket.c) before 5.12-rc8 can lead to kernel privilege escalation from the context of a network service or an unprivileged process. If sctp_destroy_sock is called without sock_net(sk)->sctp.addr_wq_lock then an element is re
CVE-2021-23133 CVSS: 6.7 MEDIUM Published: 2021-04-22T18:15:08.123
A race condition in Linux kernel SCTP sockets (net/sctp/socket.c) before 5.12-rc8 can lead to kernel privilege escalation from the context of a network service or an unprivileged process. If sctp_destroy_sock is called without sock_net(sk)->sctp.addr_wq_lock then an element is removed from the auto_asconf_splist list without any p
Indicators of compromise
- CVE-2021-23133cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2021-23133