module
Netfilter x_tables Heap OOB Write Privilege Escalation
Disclosed | Created |
---|---|
Jul 7, 2021 | Oct 7, 2021 |
Disclosed
Jul 7, 2021
Created
Oct 7, 2021
Description
A heap out-of-bounds write affecting Linux since v2.6.19-rc1 was discovered in net/netfilter/x_tables.c.
This allows an attacker to gain privileges or cause a DoS (via heap memory corruption) through user name space.
Kernels up to 5.11 (including) are vulnerable.
More information about vulnerable kernels is
available at https://nvd.nist.gov/vuln/detail/CVE-2021-22555#vulnConfigurationsArea
This allows an attacker to gain privileges or cause a DoS (via heap memory corruption) through user name space.
Kernels up to 5.11 (including) are vulnerable.
More information about vulnerable kernels is
available at https://nvd.nist.gov/vuln/detail/CVE-2021-22555#vulnConfigurationsArea
Authors
Andy Nguyen (theflow Andy Nguyen (theflow@)
Szymon Janusz
bcoles bcoles@gmail.com
Szymon Janusz
bcoles bcoles@gmail.com
Platform
Linux
Architectures
x64
References
Module Options
To display the available options, load the module within the Metasploit console and run the commands 'show options' or 'show advanced':

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.