Wind River Support Network

HomeDefectsLIN1021-2085
Fixed

LIN1021-2085 : Security Advisory - linux - CVE-2021-4002

Created: Nov 25, 2021    Updated: Mar 4, 2022
Resolved Date: Dec 6, 2021
Found In Version: 10.21.20.1, 10.21.20.8
Fix Version: 10.21.20.8
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Kernel

Description

A memory leak flaw in the Linux kernel's hugetlbfs memory usage was found in the way the user maps some regions of memory twice using shmget() which are aligned to PUD alignment with the fault of some of the memory pages. A local user could use this flaw to get unauthorized access to some data.

https://nvd.nist.gov/vuln/detail/CVE-2021-4002

CVEs


Live chat
Online