Wind River Support Network

HomeDefectsLIN1021-4126
Fixed

LIN1021-4126 : Security Advisory - linux - CVE-2021-4135

Created: Aug 8, 2022    Updated: Sep 27, 2022
Resolved Date: Sep 26, 2022
Found In Version: 10.21.20.1
Fix Version: 10.21.20.14
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Kernel

Description

A memory leak vulnerability was found in the Linux kernel's eBPF for the Simulated networking device driver in the way user uses BPF for the device such that function nsim_map_alloc_elem being called. A local user could use this flaw to get unauthorized access to some data.

CREATE(Triage):(User=admin) CVE-2021-4135 (https://nvd.nist.gov/vuln/detail/CVE-2021-4135)

CVEs


Live chat
Online