PT-2021-2468 · Linux+7 · Linux Kernel+7

De4Dcr0W

·

Published

2021-02-13

·

Updated

2021-12-02

·

CVE-2021-3444

CVSS v3.1

7.8

High

VectorAV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 5.11.2 Linux kernel versions prior to 5.10.19 Linux kernel versions prior to 5.4.101
Description The bpf verifier in the Linux kernel did not properly handle mod32 destination register truncation when the source register was known to be 0. A local attacker with the ability to load bpf programs could use this to gain out-of-bounds reads in kernel memory, leading to information disclosure, and possibly out-of-bounds writes that could potentially lead to code execution.
Recommendations For Linux kernel versions prior to 5.11.2, update to version 5.11.2 or later. For Linux kernel versions prior to 5.10.19, update to version 5.10.19 or later. For Linux kernel versions prior to 5.4.101, update to version 5.4.101 or later.

Fix

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2021-1422
ALT-PU-2021-1423
ALT-PU-2021-1442
ALT-PU-2021-1443
ALT-PU-2021-1447
ALT-PU-2021-1461
ALT-PU-2021-1462
ALT-PU-2021-1563
ALT-PU-2021-1862
ALT-PU-2021-1866
ALT-PU-2021-1869
ALT-PU-2021-1870
BDU:2021-01835
CESA-2021_4356
CVE-2021-3444
DLA-2785-1
LSN-0082-1
OESA-2021-1176
OPENSUSE-SU-2021:0532-1
OPENSUSE-SU-2021:0758-1
OPENSUSE-SU-2021:1975-1
OPENSUSE-SU-2021:1977-1
OPENSUSE-SU-2021_0532-1
OPENSUSE-SU-2021_0758-1
OPENSUSE-SU-2021_1975-1
OPENSUSE-SU-2021_1977-1
RHSA-2021:4356
RHSA-2021_4356
SUSE-SU-2021:1175-1
SUSE-SU-2021:1176-1
SUSE-SU-2021:1177-1
SUSE-SU-2021:1210-1
SUSE-SU-2021:1211-1
SUSE-SU-2021:1238-1
SUSE-SU-2021:1344-1
SUSE-SU-2021:1347-1
SUSE-SU-2021:1365-1
SUSE-SU-2021:1395-1
SUSE-SU-2021:1573-1
SUSE-SU-2021:1595-1
SUSE-SU-2021:1596-1
SUSE-SU-2021:1624-1
SUSE-SU-2021:1625-1
SUSE-SU-2021:1733-1
SUSE-SU-2021:1975-1
SUSE-SU-2021:1977-1
SUSE-SU-2021:2577-1
USN-4887-1

Affected Products

Alt Linux
Astra Linux
Centos
Linuxmint
Linux Kernel
Red Hat
Suse
Ubuntu