PT-2021-2611 · Linux+8 · Linux Kernel+8

Published

2021-03-15

·

Updated

2023-06-27

·

CVE-2021-29650

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 5.11.11
Description The issue is related to errors in synchronization within the netfilter subsystem of the Linux kernel. Exploitation of this issue can allow an attacker to cause a denial of service, leading to a system panic. The problem arises because net/netfilter/x tables.c and include/linux/netfilter/x tables.h lack a full memory barrier upon the assignment of a new table value.
Recommendations For Linux kernel versions prior to 5.11.11, update to version 5.11.11 or later to resolve the issue. As a temporary workaround, consider restricting access to the netfilter subsystem to minimize the risk of exploitation.

Fix

Improper Locking

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2021:4356
ALT-PU-2021-1582
ALT-PU-2021-1609
ALT-PU-2021-1869
ALT-PU-2021-1888
ALT-PU-2021-1896
ALT-PU-2022-1240
ALT-PU-2022-1419
ALT-PU-2022-1421
ALT-PU-2023-1814
AZL-6553
BDU:2021-02100
CESA-2021_3327
CESA-2021_4140
CESA-2021_4356
CVE-2021-29650
DLA-2689-1
DLA-2690-1
OESA-2021-1176
OPENSUSE-SU-2021:0716-1
OPENSUSE-SU-2021:0873-1
OPENSUSE-SU-2021:1975-1
OPENSUSE-SU-2021:1977-1
OPENSUSE-SU-2021_0716-1
OPENSUSE-SU-2021_0873-1
OPENSUSE-SU-2021_1975-1
OPENSUSE-SU-2021_1977-1
RHSA-2021:3327
RHSA-2021:3328
RHSA-2021:4140
RHSA-2021:4356
RHSA-2021_3327
RHSA-2021_3328
RHSA-2021_4140
RHSA-2021_4356
SUSE-SU-2021:14724-1
SUSE-SU-2021:1571-1
SUSE-SU-2021:1572-1
SUSE-SU-2021:1573-1
SUSE-SU-2021:1574-1
SUSE-SU-2021:1595-1
SUSE-SU-2021:1596-1
SUSE-SU-2021:1605-1
SUSE-SU-2021:1617-1
SUSE-SU-2021:1622-1
SUSE-SU-2021:1623-1
SUSE-SU-2021:1624-1
SUSE-SU-2021:1915-1
SUSE-SU-2021:1975-1
SUSE-SU-2021:1977-1
SUSE-SU-2021_14724-1
SUSE-SU-2023:2611-1
SUSE-SU-2023:2651-1
USN-4945-1
USN-4945-2
USN-4946-1
USN-4947-1
USN-4948-1
USN-4949-1
USN-5343-1

Affected Products

Alt Linux
Almalinux
Astra Linux
Centos
Linuxmint
Linux Kernel
Red Hat
Suse
Ubuntu