Skip to content

kernel CVE-2021-43975

Moderate
cbgbt published GHSA-ggg2-5q8j-fxcw Jan 26, 2022

Package

kernel (bottlerocket)

Affected versions

< 1.5.3

Patched versions

1.5.3

Description

An out-of-bounds write flaw was found in the Linux kernel’s Aquantia AQtion Ethernet card Atlantic driver in the way the ethernet card provides malicious input to the driver. This flaw allows a local user to emulate the networking device and crash the system.

Severity

Moderate

CVE ID

CVE-2021-43975

Weaknesses

No CWEs