PT-2021-1524 · Linux+8 · Linux Kernel+8

Published

2021-07-14

·

Updated

2025-09-29

·

CVE-2021-4154

CVSS v3.1

8.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A use-after-free flaw was found in the cgroup v1 parser, specifically in the cgroup1 parse param function in kernel/cgroup/cgroup-v1.c. This issue can be exploited by a local attacker with user privileges, potentially leading to a privilege escalation, container breakout, and denial of service on the system. The exploitation is related to the fsconfig syscall parameter. There is no information about the estimated number of potentially affected devices or real-world incidents.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2022:0825
ALSA-2024_2394
ALSA-2025_16880
ALT-PU-2021-2284
ALT-PU-2021-2288
ALT-PU-2021-2289
ALT-PU-2021-2297
ALT-PU-2021-2298
ALT-PU-2021-2312
ALT-PU-2021-2314
ALT-PU-2021-2334
ALT-PU-2021-2355
ALT-PU-2021-2363
ALT-PU-2021-2365
ALT-PU-2021-3000
ALT-PU-2021-3002
ALT-PU-2021-3007
ALT-PU-2021-3563
ALT-PU-2021-3573
ASB-A-218836280
BDU:2022-05676
CESA-2022_0819
CESA-2022_0825
CESA-2022_0849
CVE-2021-4154
ELSA-2022-0825
OPENSUSE-SU-2022_1676-1
OPENSUSE-SU-2022_1687-1
RHSA-2022:0186
RHSA-2022:0187
RHSA-2022:0231
RHSA-2022:0819
RHSA-2022:0825
RHSA-2022:0841
RHSA-2022:0849
RHSA-2022_0819
RHSA-2022_0825
RLSA-2022:0819
RLSA-2022:0825
RLSA-2022_0819
RLSA-2022_0825
SUSE-SU-2022:0241-1
SUSE-SU-2022:0254-1
SUSE-SU-2022:0257-1
SUSE-SU-2022:0291-1
SUSE-SU-2022:0292-1
SUSE-SU-2022:0293-1
SUSE-SU-2022:0295-1
SUSE-SU-2022:1669-1
SUSE-SU-2022:1676-1
SUSE-SU-2022:1687-1
SUSE-SU-2022_1669-1
SUSE-SU-2022_1676-1
SUSE-SU-2022_1687-1

Affected Products

Alt Linux
Almalinux
Astra Linux
Centos
Linux Kernel
Red Hat
Red Os
Rocky Linux
Suse