CVE-2021-42257
11.10.2021, 20:15
check_smart before 6.9.1 allows unintended drive access by an unprivileged user because it only checks for a substring match of a device path (the /dev/bus substring and a number), aka an unanchored regular expression.Enginsight
Vendor | Product | Version |
---|---|---|
check_smart_project | check_smart | 𝑥 < 6.9.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References