CVE-2021-33200

Related Vulnerabilities: CVE-2021-33200  

A flaw was found in the Linux kernel. Incorrect limits are enforced for pointer arithmetic operations which can be abused to perform out-of-bounds reads and writes in kernel memory, leading to local privilege escalation to root. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

Description

A flaw was found in the Linux kernel. Incorrect limits are enforced for pointer arithmetic operations which can be abused to perform out-of-bounds reads and writes in kernel memory, leading to local privilege escalation to root. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

Additional Information

  • Bugzilla 1965458: CVE-2021-33200 kernel: out-of-bounds reads and writes due to enforcing incorrect limits for pointer arithmetic operations by BPF verifier
  • (CWE-125|CWE-787): Out-of-bounds Read or Out-of-bounds Write
  • FAQ: Frequently asked questions about CVE-2021-33200