Wind River Support Network

HomeDefectsLIN1019-7167
Fixed

LIN1019-7167 : Security Advisory - linux - CVE-2021-38300

Created: Sep 15, 2021    Updated: Oct 21, 2021
Resolved Date: Oct 21, 2021
Found In Version: 10.19.45.1
Severity: Standard
Applicable for: Wind River Linux LTS 19
Component/s: Kernel

Description

arch/mips/net/bpf_jit.c in the Linux kernel through 5.14.6 can generate undesirable machine code when transforming unprivileged cBPF programs, allowing execution of arbitrary code within the kernel context. This occurs because conditional branches can exceed the 128 KB limit of the MIPS architecture.

https://nvd.nist.gov/vuln/detail/CVE-2021-38300

CVEs


Live chat
Online