Skip to content

kernel CVE-2021-3764

Moderate
cbgbt published GHSA-4r3p-42fc-67pf Dec 4, 2021

Package

kernel (bottlerocket)

Affected versions

< 1.4.2

Patched versions

1.4.2

Description

A memory leak flaw was found in the Linux kernel's ccp_run_aes_gcm_cmd() function that allows an attacker to cause a denial of service. The vulnerability is similar to the older CVE-2019-18808.

Severity

Moderate

CVE ID

CVE-2021-3764

Weaknesses

No CWEs