Wind River Support Network

HomeDefectsLIN10-9099
Fixed

LIN10-9099 : Security Advisory - linux - CVE-2021-38300

Created: Sep 15, 2021    Updated: Nov 10, 2021
Resolved Date: Nov 10, 2021
Found In Version: 10.17.41.1
Severity: Standard
Applicable for: Wind River Linux LTS 17
Component/s: Kernel

Description

arch/mips/net/bpf_jit.c in the Linux kernel through 5.14.6 can generate undesirable machine code when transforming unprivileged cBPF programs, allowing execution of arbitrary code within the kernel context. This occurs because conditional branches can exceed the 128 KB limit of the MIPS architecture.

https://nvd.nist.gov/vuln/detail/CVE-2021-38300

CVEs


Live chat
Online