Template:News English

From PwnWiki
Revision as of 09:06, 15 May 2021 by Pwnwiki (talk | contribs)
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)

CVE-2021-3493

The OverlayFS vulnerability allows local users under Ubuntu to gain root privileges. An Ubuntu specific issue in the overlayfs file system in the Linux kernel, in which it did not correctly validate the application regarding the file system function of the user namespace. Since Ubuntu comes with a patch that allows unprivileged overlayfs to mount, local attackers can use it to gain higher privileges.

Ubuntu-logo32.png

Affected version

Ubuntu 20.10
Ubuntu 20.04 LTS
Ubuntu 18.04 LTS
Ubuntu 16.04 LTS
Ubuntu 14.04 ESM

Repair suggestions

  • Update system package version
  • Update the Linux kernel to 5.11