Skip to content

kernel CVE-2021-3655

Moderate
cbgbt published GHSA-p42f-xmmp-85vh Nov 13, 2021

Package

kernel (bottlerocket)

Affected versions

< 1.4.0

Patched versions

1.4.0

Description

Missing size validations on inbound SCTP packets may allow the kernel to read uninitialized memory.

Severity

Moderate

CVE ID

CVE-2021-3655

Weaknesses

No CWEs