CVE-2021-36087

Published
View on NVD ↗
CVSS v3
3.3
LOW
CVSS v2
2.1
LOW
Affected
2
PROJECTS

Description

The CIL compiler in SELinux 3.2 has a heap-based buffer over-read in ebitmap_match_any (called indirectly from cil_check_neverallow). This occurs because there is sometimes a lack of checks for invalid statements in an optional block.

OSS-Fuzz vulnerabilities for OSV.
GitHubGitHub
180
This is the upstream repository for the Security Enhanced Linux (SELinux) userland libraries and tools. The software provided by this project complements the SELinux features integrated into the Linux kernel and is used by Linux distributions. All bugs and patches should be submitted to [email protected]
GitHubGitHub
1.59K