CVE-2021-20194Improper Input Validation in Kernel

Severity
7.8HIGHNVD
EPSS
0.1%
top 84.61%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 23
Latest updateMay 24

Description

There is a vulnerability in the linux kernel versions higher than 5.2 (if kernel compiled with config params CONFIG_BPF_SYSCALL=y , CONFIG_BPF=y , CONFIG_CGROUPS=y , CONFIG_CGROUP_BPF=y , CONFIG_HARDENED_USERCOPY not set, and BPF hook to getsockopt is registered). As result of BPF execution, the local user can trigger bug in __cgroup_bpf_run_filter_getsockopt() function that can lead to heap overflow (because of non-hardened usercopy). The impact of attack could be deny of service or possibly pr

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages4 packages

Debianlinux/linux_kernel< 5.10.19-1+3
Ubuntulinux/linux_kernel< 5.4.0-71.79
CVEListV5linux/linux_kernelkernel 5.2 and higher.

Also affects: Enterprise Linux 8.0, Openshift Container Platform 4.4, 4.5, 4.6

Patches

🔴Vulnerability Details

6
GHSA
GHSA-vw35-vgjr-5jhv: There is a vulnerability in the linux kernel versions higher than 52022-05-24
OSV
linux, linux-aws, linux-aws-5.4, linux-azure, linux-azure-5.4, linux-gcp, linux-gcp-5.4, linux-gke-5.4, linux-gkeop, linux-gkeop-5.4, linux-hwe-5.4, linux-kvm, linux-oracle, linux-oracle-5.4, linux-ra2021-04-13
OSV
linux-oem-5.10 vulnerabilities2021-03-20
OSV
linux, linux-aws, linux-azure, linux-gcp, linux-hwe-5.8, linux-kvm, linux-oracle, linux-raspi vulnerabilities2021-03-16
OSV
CVE-2021-20194: There is a vulnerability in the linux kernel versions higher than 52021-02-23

📋Vendor Advisories

7
Ubuntu
Linux kernel vulnerabilities2021-04-13
Ubuntu
Linux kernel (OEM) vulnerabilities2021-04-13
Ubuntu
Linux kernel (OEM) vulnerabilities2021-03-20
Ubuntu
Linux kernel vulnerabilities2021-03-16
Microsoft
There is a vulnerability in the linux kernel versions higher than 5.2 (if kernel compiled with config params CONFIG_BPF_SYSCALL=y CONFIG_BPF=y CONFIG_CGROUPS=y CONFIG_CGROUP_BPF=y CONFIG_HARDENED_2021-02-09
CVE-2021-20194 — Improper Input Validation in Kernel | cvebase