Skip to content

kernel CVE-2021-20321

Moderate
cbgbt published GHSA-5fxr-5crx-3rh7 Dec 4, 2021

Package

kernel (bottlerocket)

Affected versions

< 1.4.2

Patched versions

1.4.2

Description

A race condition accessing file objects when users perform a rename in a specific manner was found in the Linux kernel OverlayFS subsystem. A local user could use this flaw to crash the system.

Severity

Moderate

CVE ID

CVE-2021-20321

Weaknesses

No CWEs