Overview
About vulnerability
A flaw was found in the Linux kernel in net/can/bcm.c in can: bcm, where an unprivileged local user can exploit this vulnerability to execute arbitrary code within the kernel, which leads to a local privilege escalation (LPE). This allows the attacker to gain root privileges and take full control of the affected system.Details
- Affected product:
- CentOS 8.4 ELS , CentOS 8.5 ELS , CentOS Stream 8 ELS , Debian 10 ELS , Ubuntu 16.04 ELS , Ubuntu 18.04 ELS
- Affected packages:
- kernel @ 4.18.0 (+5 more)
KernelCare state
Live-patch status from KernelCare for each operating system.
| Operating system | Status | Covered kernels |
|---|---|---|
| AlmaLinux 8 | In Rollout |
126 kernels
|
| CentOS 8 | In Rollout |
33 kernels
|
| CloudLinux OS 7h | Released |
116 kernels
|
| CloudLinux OS 8 | In Rollout |
110 kernels
|
| Oracle Linux 8 | In Rollout |
145 kernels
|
| RHEL 8 | In Rollout |
142 kernels
|
| Rocky Linux 8 | In Rollout |
104 kernels
|