First published: Tue Mar 30 2021(Updated: )
An issue was discovered in the Linux kernel before 5.11.11. qrtr_recvmsg in net/qrtr/qrtr.c allows attackers to obtain sensitive information from kernel memory because of a partially uninitialized data structure, aka CID-50535249f624.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Android | ||
Linux Kernel | <5.11.11 | |
Red Hat Fedora | =32 | |
Red Hat Fedora | =33 | |
Red Hat Fedora | =34 | |
Debian Linux | =9.0 | |
debian/linux | 5.10.223-1 5.10.234-1 6.1.129-1 6.1.135-1 6.12.22-1 6.12.25-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-29647 is classified as a medium severity vulnerability due to its potential to expose sensitive information from kernel memory.
To fix CVE-2021-29647, update your Linux kernel to version 5.11.11 or newer.
CVE-2021-29647 affects various Linux kernel versions prior to 5.11.11, including specific releases of Google Android, Fedora, and Debian.
CVE-2021-29647 is a memory vulnerability that allows attackers to obtain sensitive information due to a partially uninitialized data structure.
CVE-2021-29647 was discovered before the release of Linux kernel version 5.11.11.