Wind River Support Network

HomeDefectsLIN1021-1510
Fixed

LIN1021-1510 : Security Advisory - linux - CVE-2021-38300

Created: Sep 15, 2021    Updated: Dec 7, 2021
Resolved Date: Nov 1, 2021
Found In Version: 10.21.20.1
Fix Version: 10.21.20.7
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Kernel

Description

arch/mips/net/bpf_jit.c in the Linux kernel through 5.14.6 can generate undesirable machine code when transforming unprivileged cBPF programs, allowing execution of arbitrary code within the kernel context. This occurs because conditional branches can exceed the 128 KB limit of the MIPS architecture.

https://nvd.nist.gov/vuln/detail/CVE-2021-38300

CVEs


Live chat
Online