Skip to content

kernel CVE-2021-4135

Moderate
cbgbt published GHSA-954g-9hrr-6f8x Jan 26, 2022

Package

kernel (bottlerocket)

Affected versions

< 1.5.3

Patched versions

1.5.3

Description

A memory leak flaw was found in the Linux kernel's eBPF subsystem for the Simulated networking device driver. A local user could use this flaw to get unauthorized access to some data.

Severity

Moderate

CVE ID

CVE-2021-4135

Weaknesses

No CWEs