Race condition in Linux kernel - CVE-2021-20261
Published: March 11, 2021 / Updated: March 19, 2021
Linux kernel
Linux Foundation
Description
The vulnerability allows a local privileged user to execute arbitrary code.
The vulnerability exists due to a race condition within the set_fdc(), do_format(), user_reset_fdc(), set_geometry(), get_floppy_geometry(), fd_locked_ioctl(), floppy_check_events() and floppy_revalidate() functions in drivers/block/floppy.c. A local privileged user can execute arbitrary code.