CVE-2021-33631Integer Overflow or Wraparound in Kernel

Severity
7.8HIGHNVD
EPSS
0.3%
top 51.07%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 18
Latest updateJul 10

Description

Integer Overflow or Wraparound vulnerability in openEuler kernel on Linux (filesystem modules) allows Forced Integer Overflow.This issue affects openEuler kernel: from 4.19.90 before 4.19.90-2401.3, from 5.10.0-60.18.0 before 5.10.0-183.0.0.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages5 packages

CVEListV5openeuler/kernel4.19.904.19.90-2401.3+1
Debianlinux/linux_kernel< 5.10.178-1+3
Ubuntulinux/linux_kernel< 4.4.0-256.290+1
NVDopenatom/openeuler4.19.904.19.90-2401.3+1
debiandebian/linux< linux 6.1.4-1 (bookworm)

Patches

🔴Vulnerability Details

6
OSV
linux-azure vulnerabilities2024-07-10
OSV
linux-azure, linux-azure-4.15 vulnerabilities2024-07-04
OSV
linux, linux-aws, linux-aws-hwe, linux-gcp, linux-gcp-4.15, linux-hwe, linux-kvm, linux-oracle vulnerabilities2024-07-03
OSV
linux, linux-aws, linux-kvm, linux-lts-xenial vulnerabilities2024-07-03
OSV
CVE-2021-33631: Integer Overflow or Wraparound vulnerability in openEuler kernel on Linux (filesystem modules) allows Forced Integer Overflow2024-01-18

📋Vendor Advisories

6
Ubuntu
Linux kernel (Azure) vulnerabilities2024-07-10
Ubuntu
Linux kernel (Azure) vulnerabilities2024-07-04
Ubuntu
Linux kernel vulnerabilities2024-07-03
Ubuntu
Linux kernel vulnerabilities2024-07-03
Red Hat
kernel: ext4: kernel bug in ext4_write_inline_data_end()2024-01-18

💬Community

1
Bugzilla
CVE-2021-33631 kernel: ext4: kernel bug in ext4_write_inline_data_end()2024-01-30