{"containers":{"cna":{"affected":[{"product":"kernel","vendor":"n/a","versions":[{"status":"affected","version":"Affects kernel v2.6.25 to v5.13-rc6"}]}],"descriptions":[{"lang":"en","value":".A flaw was found in the CAN BCM networking protocol in the Linux kernel, where a local attacker can abuse a flaw in the CAN subsystem to corrupt memory, crash the system or escalate privileges. This race condition in net/can/bcm.c in the Linux kernel allows for local privilege escalation to root."}],"problemTypes":[{"descriptions":[{"cweId":"CWE-362","description":"CWE-362 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')","lang":"en","type":"CWE"}]}],"providerMetadata":{"dateUpdated":"2022-04-19T18:06:33.000Z","orgId":"53f830b8-0a3f-465b-8143-3b8a9948e749","shortName":"redhat"},"references":[{"tags":["x_refsource_MISC"],"url":"https://bugzilla.redhat.com/show_bug.cgi?id=1971651"},{"tags":["x_refsource_MISC"],"url":"https://www.openwall.com/lists/oss-security/2021/06/19/1"},{"tags":["x_refsource_MISC"],"url":"https://github.com/nrb547/kernel-exploitation/blob/main/cve-2021-3609/cve-2021-3609.md"},{"tags":["x_refsource_MISC"],"url":"https://github.com/torvalds/linux/commit/d5f9023fa61ee8b94f37a93f08e94b136cf1e463"},{"tags":["x_refsource_CONFIRM"],"url":"https://security.netapp.com/advisory/ntap-20220419-0004/"}]},"adp":[{"providerMetadata":{"orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE","dateUpdated":"2024-08-03T17:01:07.458Z"},"title":"CVE Program Container","references":[{"tags":["x_refsource_MISC","x_transferred"],"url":"https://bugzilla.redhat.com/show_bug.cgi?id=1971651"},{"tags":["x_refsource_MISC","x_transferred"],"url":"https://www.openwall.com/lists/oss-security/2021/06/19/1"},{"tags":["x_refsource_MISC","x_transferred"],"url":"https://github.com/nrb547/kernel-exploitation/blob/main/cve-2021-3609/cve-2021-3609.md"},{"tags":["x_refsource_MISC","x_transferred"],"url":"https://github.com/torvalds/linux/commit/d5f9023fa61ee8b94f37a93f08e94b136cf1e463"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://security.netapp.com/advisory/ntap-20220419-0004/"}]}]},"cveMetadata":{"assignerOrgId":"53f830b8-0a3f-465b-8143-3b8a9948e749","assignerShortName":"redhat","cveId":"CVE-2021-3609","datePublished":"2022-03-03T18:24:59.000Z","dateReserved":"2021-06-18T00:00:00.000Z","dateUpdated":"2024-08-03T17:01:07.458Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"}