imPC@ndo IT

Tracker / CVE-2021-38201

CVE-2021-38201

High 7.5

net/sunrpc/xdr.c in the Linux kernel before 5.13.4 allows remote attackers to cause a denial of service (xdr_set_page_base slab-out-of-bounds access) by performing many NFS 4.2 READ_PLUS operations.

Affected products and versions

linux linux_kernel · 5.11.0 → 5.12.19
linux linux_kernel · 5.13.0 → 5.13.4
netapp element_software
netapp hci_bootstrap_os
netapp hci_management_node
netapp solidfire

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References