Vulnerability Description
Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in openEuler iSulad on Linux allows Leveraging Time-of-Check and Time-of-Use (TOCTOU) Race Conditions. This vulnerability is associated with program files https://gitee.Com/openeuler/iSulad/blob/master/src/cmd/isulad/main.C. This issue affects iSulad: 2.0.18-13, from 2.1.4-1 through 2.1.4-2.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
- https://gitee.com/src-openeuler/iSulad/pulls/639
- https://gitee.com/src-openeuler/iSulad/pulls/640
- https://gitee.com/src-openeuler/iSulad/pulls/645
- https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA
- https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA
- https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA
- https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA
- https://gitee.com/src-openeuler/iSulad/pulls/639
- https://gitee.com/src-openeuler/iSulad/pulls/640
- https://gitee.com/src-openeuler/iSulad/pulls/645
- https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA
- https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA
- https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA
- https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA
FAQ
What is CVE-2021-33632?
CVE-2021-33632 is a vulnerability with a CVSS score of 7.0 (HIGH). Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in openEuler iSulad on Linux allows Leveraging Time-of-Check and Time-of-Use (TOCTOU) Race Conditions. This vulnerability is associated ...
How severe is CVE-2021-33632?
CVE-2021-33632 has been rated HIGH with a CVSS base score of 7.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-33632?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.