7.8
CVSSv3

CVE-2021-38300

Published: 20/09/2021 Updated: 01/03/2023
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

arch/mips/net/bpf_jit.c in the Linux kernel prior to 5.4.10 can generate undesirable machine code when transforming unprivileged cBPF programs, allowing execution of arbitrary code within the kernel context. This occurs because conditional branches can exceed the 128 KB limit of the MIPS architecture.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel

netapp cloud backup -

netapp h410c_firmware -

netapp h300s_firmware -

netapp h500s_firmware -

netapp h700s_firmware -

netapp h300e_firmware -

netapp h500e_firmware -

netapp h700e_firmware -

netapp h410s_firmware -

debian debian linux 9.0

debian debian linux 10.0

Vendor Advisories

Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks CVE-2020-29374 Jann Horn of Google reported a flaw in Linux's virtual memory management A parent and child process initially share all their memory, but when either writes to a shared page, ...
A flaw was found in the Linux kernel A corrupted timer tree caused the task wakeup to be missing in the timerqueue_add function in lib/timerqueuec This flaw allows a local attacker with special user privileges to cause a denial of service, slowing and eventually stopping the system while running OSP The highest threat from this vulnerability is ...
A flaw was found in the Linux kernel A corrupted timer tree caused the task wakeup to be missing in the timerqueue_add function in lib/timerqueuec This flaw allows a local attacker with special user privileges to cause a denial of service, slowing and eventually stopping the system while running OSP The highest threat from this vulnerability is ...
A flaw was found in the Linux kernel The cBPF JIT compiler may produce machine code with incorrect branches This flaw allows an unprivileged user to craft anomalous machine code, where the control flow is hijacked to execute arbitrary kernel code The highest threat from this vulnerability is to confidentiality, integrity, as well as system avail ...
An issue has been discovered in the Linux kernel that can be abused by unprivileged local users to escalate privileges ...