CVE-2021-43413

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
07/11/2021
Last modified:
07/11/2023

Description

An issue was discovered in GNU Hurd before 0.9 20210404-9. A single pager port is shared among everyone who mmaps a file, allowing anyone to modify any files that they can read. This can be trivially exploited to get full root access.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:gnu:hurd:*:*:*:*:*:*:*:* 0.9.20210404-9 (excluding)