A flaw null pointer dereference in the Nitro Enclaves kernel driver was found in the way that Enclaves VMs forces closures on the enclave file descriptor. A local user of a host machine could use this flaw to crash the system or escalate their privileges on the system.
References
Link | Resource |
---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=1953022 | Issue Tracking Third Party Advisory |
https://lore.kernel.org/lkml/20210429165941.27020-2-andraprs@amazon.com/ | Patch Vendor Advisory |
Information
Published : 2021-06-01 07:15
Updated : 2022-06-03 07:43
NVD link : CVE-2021-3543
Mitre link : CVE-2021-3543
JSON object : View
Products Affected
fedoraproject
- fedora
nitro_enclaves_project
- nitro_enclaves
redhat
- enterprise_linux