THREATOPS
THREAT OPSThreat News › [NVD] CVE-2021-23133 (MEDIUM 6.7) — A race condition in Linux kernel SCTP sockets (net/sctp/socket.c) before 5.12-rc8 can lead to kernel privilege escalation from the context of a network service or an unprivileged process. If sctp_destroy_sock is called without sock_net(sk)->sctp.addr_wq_lock then an element is re

[NVD] CVE-2021-23133 (MEDIUM 6.7) — A race condition in Linux kernel SCTP sockets (net/sctp/socket.c) before 5.12-rc8 can lead to kernel privilege escalation from the context of a network service or an unprivileged process. If sctp_destroy_sock is called without sock_net(sk)->sctp.addr_wq_lock then an element is re

lownvdPublished 2021-04-22

CVE-2021-23133 CVSS: 6.7 MEDIUM Published: 2021-04-22T18:15:08.123

A race condition in Linux kernel SCTP sockets (net/sctp/socket.c) before 5.12-rc8 can lead to kernel privilege escalation from the context of a network service or an unprivileged process. If sctp_destroy_sock is called without sock_net(sk)->sctp.addr_wq_lock then an element is removed from the auto_asconf_splist list without any p

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2021-23133