CVE-2021-35039: High severity linux kernel vulnerability
kernel/module.c in the Linux kernel before 5.12.14 mishandles Signature Verification, aka CID-0c18f29aae7c. Without CONFIGMODULESIG, verification that a kernel module is signed, for loading via initmodule, does not occur for a module.sigenforce=1 command-line argument.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2021-35039?
CVE-2021-35039 has been classified as a high-severity vulnerability due to its potential to allow unauthorized module loading.
How do I fix CVE-2021-35039?
To mitigate CVE-2021-35039, ensure that you have updated to Linux kernel version 5.12.14 or later.
What causes CVE-2021-35039?
CVE-2021-35039 is caused by improper signature verification in the Linux kernel when loading kernel modules.
Which versions of the Linux kernel are affected by CVE-2021-35039?
CVE-2021-35039 affects Linux kernel versions prior to 5.12.14, including several earlier releases.
What systems are impacted by CVE-2021-35039?
CVE-2021-35039 impacts systems running affected versions of the Linux kernel, including various distributions like Debian.