VYPR
Unrated severityNVD Advisory· Published Nov 7, 2021· Updated Aug 4, 2024

CVE-2021-43412

CVE-2021-43412

Description

An issue was discovered in GNU Hurd before 0.9 20210404-9. libports accepts fake notification messages from any client on any port, which can lead to port use-after-free. This can be exploited for local privilege escalation to get full root access.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • GNU/Hurddescription
  • GNU/Hurdllm-create
    Range: <0.9 20210404-9
  • GNU/libportsllm-create
    Range: <0.9 20210404-9

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.