Upstream information
CVE-2021-34485 at MITRE
Description
Overall state of this security issue: Does not affect SUSE products
This issue is currently rated as having moderate severity.
CVSS v2 Scores
| CVSS detail | National Vulnerability Database |
| Base Score | 2.1 |
| Vector | AV:L/AC:L/Au:N/C:P/I:N/A:N |
| Access Vector | Local |
| Access Complexity | Low |
| Authentication | None |
| Confidentiality Impact | Partial |
| Integrity Impact | None |
| Availability Impact | None |
CVSS v3 Scores
| CVSS detail | National Vulnerability Database |
| Base Score | 5.5 |
| Vector | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N |
| Attack Vector | Local |
| Attack Complexity | Low |
| Privileges Required | Low |
| User Interaction | None |
| Scope | Unchanged |
| Confidentiality Impact | High |
| Integrity Impact | None |
| Availability Impact | None |
| CVSSv3 Version | 3.1 |
No SUSE Bugzilla entries cross referenced.
No SUSE Security Announcements cross referenced.
List of released packages
| Product(s) | Fixed package version(s) | References |
| SUSE Liberty Linux 8 | aspnetcore-runtime-3.1 >= 3.1.18-1.el8_4
aspnetcore-runtime-5.0 >= 5.0.9-1.el8_4
aspnetcore-targeting-pack-3.1 >= 3.1.18-1.el8_4
aspnetcore-targeting-pack-5.0 >= 5.0.9-1.el8_4
dotnet >= 5.0.206-1.el8_4
dotnet-apphost-pack-3.1 >= 3.1.18-1.el8_4
dotnet-apphost-pack-5.0 >= 5.0.9-1.el8_4
dotnet-host >= 5.0.9-1.el8_4
dotnet-host-fxr-2.1 >= 2.1.29-1.el8_4
dotnet-hostfxr-3.1 >= 3.1.18-1.el8_4
dotnet-hostfxr-5.0 >= 5.0.9-1.el8_4
dotnet-runtime-2.1 >= 2.1.29-1.el8_4
dotnet-runtime-3.1 >= 3.1.18-1.el8_4
dotnet-runtime-5.0 >= 5.0.9-1.el8_4
dotnet-sdk-2.1 >= 2.1.525-1.el8_4
dotnet-sdk-2.1.5xx >= 2.1.525-1.el8_4
dotnet-sdk-3.1 >= 3.1.118-1.el8_4
dotnet-sdk-5.0 >= 5.0.206-1.el8_4
dotnet-targeting-pack-3.1 >= 3.1.18-1.el8_4
dotnet-targeting-pack-5.0 >= 5.0.9-1.el8_4
dotnet-templates-3.1 >= 3.1.118-1.el8_4
dotnet-templates-5.0 >= 5.0.206-1.el8_4
netstandard-targeting-pack-2.1 >= 5.0.206-1.el8_4
| Patchnames: RHSA-2021:3142 RHSA-2021:3145 RHSA-2021:3148 |
SUSE Timeline for this CVE
CVE page created: Wed Aug 11 02:01:55 2021
CVE page last modified: Mon Oct 6 19:30:39 2025