CVE
CVE-2021-3899
There is a race condition in the 'replaced executable' detection that, with the correct local configuration, allow an attacker to execute arbitrary code as root.
- Severity
- HIGH
- CVSS
- 7.8
- Published
- Modified
Linked Releases
| Distribution | Release | Status | Evidence |
|---|---|---|---|
| Ubuntu | 22.04.5 amd64 desktop | unknown | source |
| Ubuntu | 22.04.5 amd64 live-server | unknown | source |
| Ubuntu | 20.04.6 amd64 desktop | unknown | source |
| Ubuntu | 20.04.6 amd64 live-server | unknown | source |
| Ubuntu | 18.04.6 amd64 desktop | unknown | source |
| Ubuntu | 18.04.6 amd64 live-server | unknown | source |
References
- https://bugs.launchpad.net/ubuntu/+source/apport/+bug/1948376
- https://ubuntu.com/security/notices/USN-5427-1
- https://www.cve.org/CVERecord?id=CVE-2021-3899
- https://bugs.launchpad.net/ubuntu/+source/apport/+bug/1948376
- https://ubuntu.com/security/notices/USN-5427-1
- https://www.cve.org/CVERecord?id=CVE-2021-3899