imPC@ndo IT

Tracker / CVE-2021-4197

CVE-2021-4197

High 7.8

An unprivileged write to the file handler flaw in the Linux kernel's control groups and namespaces subsystem was found in the way users have access to some less privileged process that are controlled by cgroups and have higher privileged parent process. It is actually both for cgroup2 and cgroup1 versions of control groups. A local user could use this flaw to crash the system or escalate their privileges on the system.

Affected products and versions

broadcom brocade_fabric_operating_system_firmware
debian debian_linux
linux linux_kernel · 4.15 → 4.19.238
linux linux_kernel · 4.2 → 4.14.276
linux linux_kernel · 4.20 → 5.4.189
linux linux_kernel · 5.11 → 5.15.14
linux linux_kernel · 5.5 → 5.10.111
netapp h300s_firmware
netapp h410c_firmware
netapp h410s_firmware
netapp h500s_firmware
netapp h700s_firmware
oracle communications_cloud_native_core_binding_support_function

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References