CVE-2021-43411
Last modified
CVE-2021-43411 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. An issue was discovered in GNU Hurd before 0.9 20210404-9. When trying to exec a setuid executable, there's a window of time when the process already has the new privileges, but still refers to the old task and is accessible through the old process port. EPSS estimates a 1.23% chance of exploitation in the next 30 days.
Description
An issue was discovered in GNU Hurd before 0.9 20210404-9. When trying to exec a setuid executable, there's a window of time when the process already has the new privileges, but still refers to the old task and is accessible through the old process port. This can be exploited to get full root access.
Metrics
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Gnu | Hurd | < 0.9.20210404-9 |
References
- https://lists.gnu.org/archive/html/bug-hurd/2021-05/msg00079.htmlExploit, Mailing List, Vendor Advisory
- https://salsa.debian.org/hurd-team/hurd/-/blob/4d1b079411e2f40576e7b58f9b5b78f733a2beda/debian/patches/0034-proc-Use-UIDs-for-evaluating-permissions.patchMailing List, Patch, Third Party Advisory
- https://lists.gnu.org/archive/html/bug-hurd/2021-05/msg00079.htmlExploit, Mailing List, Vendor Advisory
- https://salsa.debian.org/hurd-team/hurd/-/blob/4d1b079411e2f40576e7b58f9b5b78f733a2beda/debian/patches/0034-proc-Use-UIDs-for-evaluating-permissions.patchMailing List, Patch, Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2021-43411?
How severe is CVE-2021-43411?
How do I fix CVE-2021-43411?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2021
- CVE-2021-43405An issue was discovered in FusionPBX before 4.5.30. The fax_…8.8
- CVE-2021-43406An issue was discovered in FusionPBX before 4.5.30. The fax_…8.8
- CVE-2021-43408The "Duplicate Post" WordPress plugin up to and including ve…8.8
- CVE-2021-43409The “WPO365 | LOGIN” WordPress plugin (up to and including v…6.1
- CVE-2021-4341The uListing plugin for WordPress is vulnerable to authoriza…9.8
- CVE-2021-43410Apache Airavata Django Portal allows CRLF log injection beca…5.3
- CVE-2021-43412An issue was discovered in GNU Hurd before 0.9 20210404-9. l…7.8
- CVE-2021-43413An issue was discovered in GNU Hurd before 0.9 20210404-9. A…8.8
- CVE-2021-43414An issue was discovered in GNU Hurd before 0.9 20210404-9. T…7
- CVE-2021-43415HashiCorp Nomad and Nomad Enterprise up to 1.0.13, 1.1.7, an…8.8
- CVE-2021-43419An Information Disclosure vulnerability exists in Opay Mobil…7.5
- CVE-2021-4342Rejected reason: CVE split into individual CVE IDs for each …
Are you affected by CVE-2021-43411?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
