Skip to content

kernel CVE-2021-4197

High
cbgbt published GHSA-5536-w268-777r Mar 9, 2022

Package

kernel (bottlerocket)

Affected versions

< 1.6.2

Patched versions

1.6.2

Description

An unprivileged-write-to-the-file-handler flaw in the Linux kernel's control groups and namespaces subsystem was found in the way users have access to some less privileged process that are controlled by cgroups and have higher privileged parent process. It is actually both for cgroup2 and cgroup1 versions of control groups. A local user could use this flaw to crash the system or escalate their privileges on the system.

Severity

High

CVE ID

CVE-2021-4197

Weaknesses

No CWEs