PT-2024-11335 · Linux+1 · Linux Kernel+1

Syzbot

·

Published

2021-04-12

·

Updated

2024-05-21

·

CVE-2021-47336

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The issue is related to the smackfs component in the Linux kernel, where the function smk set cipso() does not properly restrict the bytes count. This problem was missed in a previous commit that aimed to restrict the bytes count in smackfs write functions, and it only applies when the format is SMK FIXED24 FMT.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

BDU:2025-14610
CVE-2021-47336

Affected Products

Astra Linux
Linux Kernel