Memory leak in linuxptp - CVE-2021-3571
Published: July 6, 2021
Vulnerability identifier: #VU54574
CSH Severity: Medium
CVSS v4: 8.8 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2021-3571
CWE-ID: CWE-401
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote attacker to gain access to sensitive information or perform DoS attack on the target system.
The vulnerability exists due memory leak in ptp4l program when processing PTP one-step sync messages. A remote attacker can send specially crafted one-step sync messages to the system, force the application to leak memory and perform denial of service attack or gain access to sensitive information.
Affected software
linuxptp
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for ARM 64
openEuler
Fedora
linuxptp
linuxptp-debuginfo
linuxptp-debugsource
linuxptp-help
linuxptp (Red Hat package)
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for ARM 64
openEuler
Fedora
linuxptp
linuxptp-debuginfo
linuxptp-debugsource
linuxptp-help
linuxptp (Red Hat package)
How to mitigate CVE-2021-3571
Install updates from vendor's website.
linuxptp - addressed in versions 2.0.1, 3.1.1
linuxptp - update to 2.0-4
linuxptp-debuginfo - update to 2.0-4
linuxptp-debugsource - update to 2.0-4
linuxptp-help - update to 2.0-4
linuxptp (Red Hat package) - update to 3.1.1-1.el8
linuxptp - addressed in versions 3.1.1-1.fc33, 3.1.1-1.fc34
linuxptp - update to 2.0-4
linuxptp-debuginfo - update to 2.0-4
linuxptp-debugsource - update to 2.0-4
linuxptp-help - update to 2.0-4
linuxptp (Red Hat package) - update to 3.1.1-1.el8
linuxptp - addressed in versions 3.1.1-1.fc33, 3.1.1-1.fc34