Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2011-1021

23
FAUCET Score

CVE-2011-1021 describes a local privilege escalation vulnerability in the Linux kernel, specifically within the drivers/acpi/debugfs.c component before version 3.0. An attacker with root privileges can leverage this flaw by writing to the /sys/kernel/debug/acpi/custom_method file, allowing them to modify arbitrary kernel memory locations. The vulnerability has a CVSS score of 3.6 (Low severity) due to its local attack vector and requires existing root access, potentially leading to partial integrity and availability impacts. While not actively exploited in the wild or on the KEV catalog, an ExploitDB entry (EDB-15774) exists, indicating public exploit code availability, though community discussion and media coverage are minimal.

Impacted Technologies

VendorProductVersion(s)CPE
<= 2.6.9CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
2.6.9CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:2.6.9:rc1:*:*:*:*:*:*
2.6.9CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:2.6.9:rc2:*:*:*:*:*:*
2.6.9CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:2.6.9:rc3:*:*:*:*:*:*
2.6.9CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:2.6.9:rc4:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 2.0

3.6LOW

AV:L/AC:L/Au:N/C:N/I:P/A:P

Confidentiality Impact
NONE
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
Access Vector
LOCAL
Access Complexity
LOW
Authentication
NONE
Exploitability Score
3.9
Impact Score
4.9
CvssVersion
2.0

Exploit Intelligence

EPSS Score
0.93%
Probability of exploitation in next 30 days
EPSS Percentile
56.9%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
ExploitDB: EDB-15774 · Dec 18, 2010
This CVE's current EPSS score of 0.0093 is in the 90th percentile among its peer group of 2,096 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.6 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (2)

github_advisorypatch availablevia nvd_reference
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise MRG 2Fixed in: kernel-rt-0:2.6.33.9-rt31.75.el6rt
View patch

Vendor Advisories (1)

redhatCVE-2011-1021Moderate

kernel: /sys/kernel/debug/acpi/custom_method can bypass module restrictions

Feb 22, 2011

References

ftp.osuosl.org / pub/linux/kernel/v3.0/ChangeLog-3.0
git.kernel.org
bugzilla.redhat.com / show_bug.cgi
github.com / torvalds/linux/commit/526b4af47f44148c9d665e57723ed9f86634c6e3
ExploitPatch
openwall.com / lists/oss-security/2011/02/25/5