CVE-2021-25316: Local DoS of VM live migration due to use of static tmp files in detach_disks.sh in s390-tools
A Insecure Temporary File vulnerability in s390-tools of SUSE Linux Enterprise Server 12-SP5, SUSE Linux Enterprise Server 15-SP2 allows local attackers to prevent VM live migrations This issue affects: SUSE Linux Enterprise Server 12-SP5 s390-tools versions prior to 2.1.0-18.29.1. SUSE Linux Enterprise Server 15-SP2 s390-tools versions prior to 2.11.0-9.20.1.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-25316?
CVE-2021-25316 is a vulnerability in s390-tools of SUSE Linux Enterprise Server 12-SP5 and SUSE Linux Enterprise Server 15-SP2 that allows local attackers to prevent VM live migrations.
Which versions of s390-tools are affected by CVE-2021-25316?
CVE-2021-25316 affects s390-tools versions prior to 2.1.0-18.29.1 and versions prior to 2.11.0-9.20.1.
How can CVE-2021-25316 be exploited?
To exploit CVE-2021-25316, a local attacker needs to have access to the system and can prevent VM live migrations.
What is the severity of CVE-2021-25316?
CVE-2021-25316 has a low severity with a CVSS score of 3.3.
Is SUSE Linux Enterprise Server 15-SP5 vulnerable to CVE-2021-25316?
No, SUSE Linux Enterprise Server 15-SP5 is not vulnerable to CVE-2021-25316.