QID 375710

Date Published: 2021-07-20

QID 375710: Linux Kernel Local Privilege Escalation Vulnerability (Sequoia)

A file system is an organization of data and metadata on a storage device.

The Qualys Research Team has discovered a size_t-to-int type conversion vulnerability in the Linux Kernel filesystem layer affecting most Linux operating systems.

Successful exploitation of this vulnerability allows any unprivileged user to gain root privileges on the vulnerable host.

  • CVSS V3 rated as High - 7.8 severity.
  • CVSS V2 rated as High - 7.2 severity.
  • Solution
    Upgrade to the latest packages which contain a patch.

    Vendor References

    CVEs related to QID 375710

    Software Advisories
    Advisory ID Software Component Link
    Sequoia URL Logo www.openwall.com/lists/oss-security/2021/07/20/1