PT-2024-11373 · Linux+2 · Linux Kernel+2
Syzbot
·
Published
2021-09-13
·
Updated
2025-09-25
·
CVE-2021-47376
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions prior to 5.14.0-syzkaller
Description
The issue is related to the Linux kernel's bpf (Berkeley Packet Filter) functionality. A vulnerability has been resolved by adding an oversize check before calling kvcalloc(). When the allocation is larger than what kmalloc() supports, a warning is triggered. The vulnerability is related to the function
kvmalloc node() and the bpf check() function. The kvcalloc() function is also involved.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Astra Linux
Linux Kernel
Suse