Wind River Support Network

HomeDefectsLIN1018-8177
Fixed

LIN1018-8177 : Security Advisory - linux - CVE-2021-38300

Created: Sep 15, 2021    Updated: Oct 28, 2021
Resolved Date: Oct 28, 2021
Found In Version: 10.18.44.1
Severity: Standard
Applicable for: Wind River Linux LTS 18
Component/s: Kernel

Description

arch/mips/net/bpf_jit.c in the Linux kernel through 5.14.6 can generate undesirable machine code when transforming unprivileged cBPF programs, allowing execution of arbitrary code within the kernel context. This occurs because conditional branches can exceed the 128 KB limit of the MIPS architecture.

https://nvd.nist.gov/vuln/detail/CVE-2021-38300

CVEs


Live chat
Online