CVE-2021-3732

Name
CVE-2021-3732
Description
A security issue was found in Linux kernel’s OverlayFS subsystem where a local attacker who has the ability to mount the TmpFS filesystem with OverlayFS can abuse a logic bug in the overlayfs code which can inadvertently reveal files hidden in the original mount.
NVD Severity
medium
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
Third Party Advisory https://ubuntu.com/security/CVE-2021-3732
Issue Tracking https://bugzilla.redhat.com/show_bug.cgi?id=1995249
Patch https://github.com/torvalds/linux/commit/427215d85e8d1476da1a86b8d67aceb485eb3631
Mailing List https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=427215d85e8d1476da1a86b8d67aceb485eb3631

Match rules

CPE URI Source package Min version Max version
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* linux_kernel >= None < 5.14

Vulnerable and fixed packages

Source package Branch Version Maintainer Status