PT-2021-4223 · Linux+7 · Linux Kernel+7

Piotr Krysiuk

·

Published

2021-05-25

·

Updated

2024-03-25

·

CVE-2021-33200

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions through 5.12.7
Description The issue is related to a buffer overflow in the kernel/bpf/verifier.c component of the Linux kernel, allowing an attacker to perform out-of-bounds reads and writes in kernel memory. This can lead to local privilege escalation to the root level. A specific corner case involves the off reg causing a masking direction change, resulting in an incorrect final aux->alu limit.
Recommendations For Linux kernel versions through 5.12.7, update to a version later than 5.12.7 to resolve the issue. At the moment, there is no information about additional mitigation measures for this specific vulnerability.

Fix

LPE

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2021:4356
ALT-PU-2021-1873
ALT-PU-2021-1912
ALT-PU-2021-1913
ALT-PU-2021-1915
ALT-PU-2021-1985
ALT-PU-2021-1990
ALT-PU-2021-2293
ALT-PU-2021-2305
ALT-PU-2021-2307
ALT-PU-2021-2315
ALT-PU-2021-2326
ALT-PU-2021-2330
AZL-6563
BDU:2021-04827
CESA-2021_4140
CESA-2021_4356
CVE-2021-33200
MGASA-2021-0224
MGASA-2021-0225
OESA-2021-1176
OPENSUSE-SU-2021:0843-1
OPENSUSE-SU-2021:0947-1
OPENSUSE-SU-2021:1975-1
OPENSUSE-SU-2021:1977-1
OPENSUSE-SU-2021:2427-1
OPENSUSE-SU-2021_0843-1
OPENSUSE-SU-2021_0947-1
OPENSUSE-SU-2021_1975-1
OPENSUSE-SU-2021_1977-1
OPENSUSE-SU-2021_2427-1
RHSA-2021:4140
RHSA-2021:4356
RHSA-2021_4140
RHSA-2021_4356
SUSE-SU-2021:1887-1
SUSE-SU-2021:1888-1
SUSE-SU-2021:1889-1
SUSE-SU-2021:1890-1
SUSE-SU-2021:1891-1
SUSE-SU-2021:1899-1
SUSE-SU-2021:1912-1
SUSE-SU-2021:1913-1
SUSE-SU-2021:1975-1
SUSE-SU-2021:1977-1
SUSE-SU-2021:2020-1
SUSE-SU-2021:2027-1
SUSE-SU-2021:2057-1
SUSE-SU-2021:2208-1
SUSE-SU-2021:2421-1
SUSE-SU-2021:2422-1
SUSE-SU-2021:2427-1
SUSE-SU-2024:0925-1
SUSE-SU-2024:0975-1
USN-4983-1
USN-4997-1
USN-4997-2
USN-4999-1
USN-5000-1
USN-5000-2
USN-5018-1

Affected Products

Alt Linux
Almalinux
Centos
Linuxmint
Linux Kernel
Red Hat
Suse
Ubuntu