CVE-2021-3802

MEDIUM

udisks < 2.9.4 - Denial of Service via Crafted Image File

Title source: llm
STIX 2.1

Description

A vulnerability found in udisks2. This flaw allows an attacker to input a specially crafted image file/USB leading to kernel panic. The highest threat from this vulnerability is to system availability.

References (3)

Core 3

Scores

CVSS v3 4.2
EPSS 0.0011
EPSS Percentile 28.5%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:N/I:N/A:H

Details

CWE
CWE-20
Status published
Products (3)
fedoraproject/fedora 34
redhat/enterprise_linux 8.0
udisks_project/udisks < 2.9.4
Published Nov 29, 2021
Tracked Since Feb 18, 2026