CVE-2021-29133 describes a local file disclosure vulnerability in haserl, a component of the Alpine Linux Configuration Framework, affecting versions prior to 0.9.36. This flaw allows a local attacker to read the contents of any file on the filesystem due to insufficient verification. Rated with a CVSS score of 5.5 (Medium), the vulnerability has low attack complexity and requires local privileges, but can lead to high confidentiality impact. While not on the CISA KEV list, a Metasploit module exists for exploitation, though there is minimal community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 0.9.36CPE matchmatch criteria | cpe:2.3:a:haserl_project:haserl:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.