Skip to content

kernel CVE-2021-3489

Moderate
tjkirch published GHSA-8j78-p9gc-hw4x Jun 25, 2021

Package

kernel (bottlerocket)

Affected versions

< 1.1.2

Patched versions

1.1.2

Description

An issue was found in the Linux kernel BPF subsystem where you could allocate a buffer larger than available memory by writing to the BPF ring buffer too fast. A local user could use this flaw to crash the system or possibly escalate their privileges on the system.

Severity

Moderate

CVE ID

CVE-2021-3489

Weaknesses

No CWEs