CVE-2021-3114

medium
Published 2022-02-17 · Modified 2021-11-12
CVSS v3
CVSS v2
VIR risk
5.5

Description

Moderate: grafana security, bug fix, and enhancement update

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: alma — https://errata.almalinux.org/8/ALSA-2021-4226.html

vendor Authored 2026-05-27

Vendor advisory: rocky — https://errata.rockylinux.org/RLSA-2021:1746

vendor Authored 2026-05-27

Vendor advisory: rocky — https://errata.rockylinux.org/RLSA-2021:4226

vendor Authored 2026-05-27

Vendor advisory: debian — https://security-tracker.debian.org/tracker/CVE-2021-3114

vendor Authored 2026-05-27

Vendor advisory: suse — https://www.suse.com/security/cve/CVE-2021-3114.html

vendor Authored 2026-05-27

Vendor advisory: arch — https://security.archlinux.org/ASA-202101-27

OS impact

OSVersionStatusFixed in
arch archfixed2:1.15.7-1
suse slesaffected
debian debianbullseyefixed1.15.7-1
rockylinux rocky8fixed

Package impact

EcosystemPackageVulnerableFixed
golang Gostdlib>=1.15.0-0,<1.15.71.14.14

References

Verify integrity in audit chain (admin only). AS-IS.