First published: Wed Apr 14 2021(Updated: )
A Insecure Temporary File vulnerability in s390-tools of SUSE Linux Enterprise Server 12-SP5, SUSE Linux Enterprise Server 15-SP2 allows local attackers to prevent VM live migrations This issue affects: SUSE Linux Enterprise Server 12-SP5 s390-tools versions prior to 2.1.0-18.29.1. SUSE Linux Enterprise Server 15-SP2 s390-tools versions prior to 2.11.0-9.20.1.
Credit: meissner@suse.de
Affected Software | Affected Version | How to fix |
---|---|---|
Suse S390-tools | <2.1.0-18.29.1 | |
SUSE Linux Enterprise Server | =15-sp5 | |
Suse S390-tools | <2.11.0-9.20.1 | |
SUSE Linux Enterprise Server | =15-sp2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-25316 is a vulnerability in s390-tools of SUSE Linux Enterprise Server 12-SP5 and SUSE Linux Enterprise Server 15-SP2 that allows local attackers to prevent VM live migrations.
CVE-2021-25316 affects s390-tools versions prior to 2.1.0-18.29.1 and versions prior to 2.11.0-9.20.1.
To exploit CVE-2021-25316, a local attacker needs to have access to the system and can prevent VM live migrations.
CVE-2021-25316 has a low severity with a CVSS score of 3.3.
No, SUSE Linux Enterprise Server 15-SP5 is not vulnerable to CVE-2021-25316.