CVE-2021-3570
Summary
| CVE | CVE-2021-3570 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-07-09 11:15:00 UTC |
| Updated | 2023-11-07 03:38:00 UTC |
| Description | A flaw was found in the ptp4l program of the linuxptp package. A missing length check when forwarding a PTP message between ports allows a remote attacker to cause an information leak, crash, or potentially remote code execution. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability. This flaw affects linuxptp versions before 3.1.1, before 2.0.1, before 1.9.3, before 1.8.1, before 1.7.1, before 1.6.1 and before 1.5.1. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| Debian -- Security Information -- DSA-4938-1 linuxptp |
DEBIAN |
www.debian.org |
|
| [SECURITY] Fedora 33 Update: linuxptp-3.1.1-1.fc33 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| [SECURITY] [DLA 2723-1] linuxptp security update |
MLIST |
lists.debian.org |
|
| 1966240 – (CVE-2021-3570) CVE-2021-3570 linuxptp: missing length check of forwarded messages |
MISC |
bugzilla.redhat.com |
|
| [SECURITY] Fedora 33 Update: linuxptp-3.1.1-1.fc33 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| [SECURITY] Fedora 34 Update: linuxptp-3.1.1-1.fc34 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| [SECURITY] Fedora 34 Update: linuxptp-3.1.1-1.fc34 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 159299 Oracle Enterprise Linux Security Update for linuxptp (ELSA-2021-2658)
- 159300 Oracle Enterprise Linux Security Update for linuxptp (ELSA-2021-2660)
- 178704 Debian Security Update for linuxptp (DSA 4938-1)
- 178732 Debian Security Update for linuxptp (DLA 2723-1)
- 179940 Debian Security Update for linuxptp (CVE-2021-3570)
- 199369 Ubuntu Security Notification for Linux PTP Vulnerability (USN-6097-1)
- 239486 Red Hat Update for linuxptp (RHSA-2021:2660)
- 239487 Red Hat Update for linuxptp (RHSA-2021:2659)
- 239488 Red Hat Update for linuxptp (RHSA-2021:2658)
- 239489 Red Hat Update for linuxptp (RHSA-2021:2657)
- 257096 CentOS Security Update for linuxptp (CESA-2021:2658)
- 281725 Fedora Security Update for linuxptp (FEDORA-2021-1b42c2f458)
- 281726 Fedora Security Update for linuxptp (FEDORA-2021-a5b584004c)
- 352502 Amazon Linux Security Advisory for linuxptp: ALAS2-2021-1697
- 376999 Alibaba Cloud Linux Security Update for linuxptp (ALINUX2-SA-2021:0042)
- 377099 Alibaba Cloud Linux Security Update for linuxptp (ALINUX3-SA-2021:0050)
- 670715 EulerOS Security Update for linuxptp (EulerOS-SA-2021-2473)
- 670751 EulerOS Security Update for linuxptp (EulerOS-SA-2021-2509)
- 670922 EulerOS Security Update for linuxptp (EulerOS-SA-2021-2473)
- 670964 EulerOS Security Update for linuxptp (EulerOS-SA-2021-2596)
- 750871 SUSE Enterprise Linux Security Update for linuxptp (SUSE-SU-2021:2443-1)
- 750896 SUSE Enterprise Linux Security Update for linuxptp (SUSE-SU-2021:2472-1)
- 750902 SUSE Enterprise Linux Security Update for linuxptp (SUSE-SU-2021:2545-1)
- 750942 OpenSUSE Security Update for linuxptp (openSUSE-SU-2021:1102-1)
- 751173 OpenSUSE Security Update for linuxptp (openSUSE-SU-2021:3202-1)
- 940258 AlmaLinux Security Update for linuxptp (ALSA-2021:2660)
- 960038 Rocky Linux Security Update for linuxptp (RLSA-2021:2660)