CVE-2021-4148 — Improper Validation of Integrity Check Value in Kernel
Severity
5.5MEDIUMNVD
EPSS
0.0%
top 95.78%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 23
Latest updateMar 24
Description
A vulnerability was found in the Linux kernel's block_invalidatepage in fs/buffer.c in the filesystem. A missing sanity check may allow a local attacker with user privilege to cause a denial of service (DOS) problem.
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6
Affected Packages5 packages
Also affects: Fedora 35
Patches
🔴Vulnerability Details
2📋Vendor Advisories
3Microsoft▶
A vulnerability was found in the Linux kernel's block_invalidatepage in fs/buffer.c in the filesystem. A missing sanity check may allow a local attacker with user privilege to cause a denial of servic↗2022-03-08
Red Hat▶
kernel: Improper implementation of block_invalidatepage() allows users to crash the kernel↗2021-09-13
Debian▶
CVE-2021-4148: linux - A vulnerability was found in the Linux kernel's block_invalidatepage in fs/buffe...↗2021