ID

VAR-202107-1361


CVE

CVE-2021-33909


TITLE

Linux kernel Input validation error vulnerability

Trust: 0.6

sources: CNNVD: CNNVD-202107-1534

DESCRIPTION

fs/seq_file.c in the Linux kernel 3.16 through 5.13.x before 5.13.4 does not properly restrict seq buffer allocations, leading to an integer overflow, an Out-of-bounds Write, and escalation to root by an unprivileged user, aka CID-8cae8cd89f05. 6 ELS) - i386, s390x, x86_64 3. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Important: kernel security and bug fix update Advisory ID: RHSA-2021:2718-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2021:2718 Issue date: 2021-07-20 CVE Names: CVE-2020-25704 CVE-2020-26541 CVE-2020-35508 CVE-2021-33034 CVE-2021-33909 ==================================================================== 1. Summary: An update for kernel is now available for Red Hat Enterprise Linux 8.2 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat CodeReady Linux Builder EUS (v. 8.2) - aarch64, ppc64le, x86_64 Red Hat Enterprise Linux BaseOS EUS (v. 8.2) - aarch64, noarch, ppc64le, s390x, x86_64 3. Security Fix(es): * kernel: size_t-to-int conversion vulnerability in the filesystem layer (CVE-2021-33909) * kernel: use-after-free in net/bluetooth/hci_event.c when destroying an hci_chan (CVE-2021-33034) * kernel: perf_event_parse_addr_filter memory (CVE-2020-25704) * kernel: security bypass in certs/blacklist.c and certs/system_keyring.c (CVE-2020-26541) * kernel: fork: fix copy_process(CLONE_PARENT) race with the exiting - ->real_parent (CVE-2020-35508) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Bug Fix(es): * RHEL8.2 Snapshot2 - tpm: ibmvtpm: Wait for buffer to be set before proceeding (BZ#1933986) * fnic crash from invalid request pointer (BZ#1961707) * [Azure][RHEL8.4] Two Patches Needed To Enable Azure Host Time-syncing in VMs (BZ#1963051) * RHEL kernel 8.2 and higher are affected by data corruption bug in raid1 arrays using bitmaps. (BZ#1969338) 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 The system must be rebooted for this update to take effect. 5. Bugs fixed (https://bugzilla.redhat.com/): 1886285 - CVE-2020-26541 kernel: security bypass in certs/blacklist.c and certs/system_keyring.c 1895961 - CVE-2020-25704 kernel: perf_event_parse_addr_filter memory 1902724 - CVE-2020-35508 kernel: fork: fix copy_process(CLONE_PARENT) race with the exiting ->real_parent 1961305 - CVE-2021-33034 kernel: use-after-free in net/bluetooth/hci_event.c when destroying an hci_chan 1970273 - CVE-2021-33909 kernel: size_t-to-int conversion vulnerability in the filesystem layer 6. Package List: Red Hat Enterprise Linux BaseOS EUS (v. 8.2): Source: kernel-4.18.0-193.60.2.el8_2.src.rpm aarch64: bpftool-4.18.0-193.60.2.el8_2.aarch64.rpm bpftool-debuginfo-4.18.0-193.60.2.el8_2.aarch64.rpm kernel-4.18.0-193.60.2.el8_2.aarch64.rpm kernel-core-4.18.0-193.60.2.el8_2.aarch64.rpm kernel-cross-headers-4.18.0-193.60.2.el8_2.aarch64.rpm kernel-debug-4.18.0-193.60.2.el8_2.aarch64.rpm kernel-debug-core-4.18.0-193.60.2.el8_2.aarch64.rpm kernel-debug-debuginfo-4.18.0-193.60.2.el8_2.aarch64.rpm kernel-debug-devel-4.18.0-193.60.2.el8_2.aarch64.rpm kernel-debug-modules-4.18.0-193.60.2.el8_2.aarch64.rpm kernel-debug-modules-extra-4.18.0-193.60.2.el8_2.aarch64.rpm kernel-debuginfo-4.18.0-193.60.2.el8_2.aarch64.rpm kernel-debuginfo-common-aarch64-4.18.0-193.60.2.el8_2.aarch64.rpm kernel-devel-4.18.0-193.60.2.el8_2.aarch64.rpm kernel-headers-4.18.0-193.60.2.el8_2.aarch64.rpm kernel-modules-4.18.0-193.60.2.el8_2.aarch64.rpm kernel-modules-extra-4.18.0-193.60.2.el8_2.aarch64.rpm kernel-tools-4.18.0-193.60.2.el8_2.aarch64.rpm kernel-tools-debuginfo-4.18.0-193.60.2.el8_2.aarch64.rpm kernel-tools-libs-4.18.0-193.60.2.el8_2.aarch64.rpm perf-4.18.0-193.60.2.el8_2.aarch64.rpm perf-debuginfo-4.18.0-193.60.2.el8_2.aarch64.rpm python3-perf-4.18.0-193.60.2.el8_2.aarch64.rpm python3-perf-debuginfo-4.18.0-193.60.2.el8_2.aarch64.rpm noarch: kernel-abi-whitelists-4.18.0-193.60.2.el8_2.noarch.rpm kernel-doc-4.18.0-193.60.2.el8_2.noarch.rpm ppc64le: bpftool-4.18.0-193.60.2.el8_2.ppc64le.rpm bpftool-debuginfo-4.18.0-193.60.2.el8_2.ppc64le.rpm kernel-4.18.0-193.60.2.el8_2.ppc64le.rpm kernel-core-4.18.0-193.60.2.el8_2.ppc64le.rpm kernel-cross-headers-4.18.0-193.60.2.el8_2.ppc64le.rpm kernel-debug-4.18.0-193.60.2.el8_2.ppc64le.rpm kernel-debug-core-4.18.0-193.60.2.el8_2.ppc64le.rpm kernel-debug-debuginfo-4.18.0-193.60.2.el8_2.ppc64le.rpm kernel-debug-devel-4.18.0-193.60.2.el8_2.ppc64le.rpm kernel-debug-modules-4.18.0-193.60.2.el8_2.ppc64le.rpm kernel-debug-modules-extra-4.18.0-193.60.2.el8_2.ppc64le.rpm kernel-debuginfo-4.18.0-193.60.2.el8_2.ppc64le.rpm kernel-debuginfo-common-ppc64le-4.18.0-193.60.2.el8_2.ppc64le.rpm kernel-devel-4.18.0-193.60.2.el8_2.ppc64le.rpm kernel-headers-4.18.0-193.60.2.el8_2.ppc64le.rpm kernel-modules-4.18.0-193.60.2.el8_2.ppc64le.rpm kernel-modules-extra-4.18.0-193.60.2.el8_2.ppc64le.rpm kernel-tools-4.18.0-193.60.2.el8_2.ppc64le.rpm kernel-tools-debuginfo-4.18.0-193.60.2.el8_2.ppc64le.rpm kernel-tools-libs-4.18.0-193.60.2.el8_2.ppc64le.rpm perf-4.18.0-193.60.2.el8_2.ppc64le.rpm perf-debuginfo-4.18.0-193.60.2.el8_2.ppc64le.rpm python3-perf-4.18.0-193.60.2.el8_2.ppc64le.rpm python3-perf-debuginfo-4.18.0-193.60.2.el8_2.ppc64le.rpm s390x: bpftool-4.18.0-193.60.2.el8_2.s390x.rpm bpftool-debuginfo-4.18.0-193.60.2.el8_2.s390x.rpm kernel-4.18.0-193.60.2.el8_2.s390x.rpm kernel-core-4.18.0-193.60.2.el8_2.s390x.rpm kernel-cross-headers-4.18.0-193.60.2.el8_2.s390x.rpm kernel-debug-4.18.0-193.60.2.el8_2.s390x.rpm kernel-debug-core-4.18.0-193.60.2.el8_2.s390x.rpm kernel-debug-debuginfo-4.18.0-193.60.2.el8_2.s390x.rpm kernel-debug-devel-4.18.0-193.60.2.el8_2.s390x.rpm kernel-debug-modules-4.18.0-193.60.2.el8_2.s390x.rpm kernel-debug-modules-extra-4.18.0-193.60.2.el8_2.s390x.rpm kernel-debuginfo-4.18.0-193.60.2.el8_2.s390x.rpm kernel-debuginfo-common-s390x-4.18.0-193.60.2.el8_2.s390x.rpm kernel-devel-4.18.0-193.60.2.el8_2.s390x.rpm kernel-headers-4.18.0-193.60.2.el8_2.s390x.rpm kernel-modules-4.18.0-193.60.2.el8_2.s390x.rpm kernel-modules-extra-4.18.0-193.60.2.el8_2.s390x.rpm kernel-tools-4.18.0-193.60.2.el8_2.s390x.rpm kernel-tools-debuginfo-4.18.0-193.60.2.el8_2.s390x.rpm kernel-zfcpdump-4.18.0-193.60.2.el8_2.s390x.rpm kernel-zfcpdump-core-4.18.0-193.60.2.el8_2.s390x.rpm kernel-zfcpdump-debuginfo-4.18.0-193.60.2.el8_2.s390x.rpm kernel-zfcpdump-devel-4.18.0-193.60.2.el8_2.s390x.rpm kernel-zfcpdump-modules-4.18.0-193.60.2.el8_2.s390x.rpm kernel-zfcpdump-modules-extra-4.18.0-193.60.2.el8_2.s390x.rpm perf-4.18.0-193.60.2.el8_2.s390x.rpm perf-debuginfo-4.18.0-193.60.2.el8_2.s390x.rpm python3-perf-4.18.0-193.60.2.el8_2.s390x.rpm python3-perf-debuginfo-4.18.0-193.60.2.el8_2.s390x.rpm x86_64: bpftool-4.18.0-193.60.2.el8_2.x86_64.rpm bpftool-debuginfo-4.18.0-193.60.2.el8_2.x86_64.rpm kernel-4.18.0-193.60.2.el8_2.x86_64.rpm kernel-core-4.18.0-193.60.2.el8_2.x86_64.rpm kernel-cross-headers-4.18.0-193.60.2.el8_2.x86_64.rpm kernel-debug-4.18.0-193.60.2.el8_2.x86_64.rpm kernel-debug-core-4.18.0-193.60.2.el8_2.x86_64.rpm kernel-debug-debuginfo-4.18.0-193.60.2.el8_2.x86_64.rpm kernel-debug-devel-4.18.0-193.60.2.el8_2.x86_64.rpm kernel-debug-modules-4.18.0-193.60.2.el8_2.x86_64.rpm kernel-debug-modules-extra-4.18.0-193.60.2.el8_2.x86_64.rpm kernel-debuginfo-4.18.0-193.60.2.el8_2.x86_64.rpm kernel-debuginfo-common-x86_64-4.18.0-193.60.2.el8_2.x86_64.rpm kernel-devel-4.18.0-193.60.2.el8_2.x86_64.rpm kernel-headers-4.18.0-193.60.2.el8_2.x86_64.rpm kernel-modules-4.18.0-193.60.2.el8_2.x86_64.rpm kernel-modules-extra-4.18.0-193.60.2.el8_2.x86_64.rpm kernel-tools-4.18.0-193.60.2.el8_2.x86_64.rpm kernel-tools-debuginfo-4.18.0-193.60.2.el8_2.x86_64.rpm kernel-tools-libs-4.18.0-193.60.2.el8_2.x86_64.rpm perf-4.18.0-193.60.2.el8_2.x86_64.rpm perf-debuginfo-4.18.0-193.60.2.el8_2.x86_64.rpm python3-perf-4.18.0-193.60.2.el8_2.x86_64.rpm python3-perf-debuginfo-4.18.0-193.60.2.el8_2.x86_64.rpm Red Hat CodeReady Linux Builder EUS (v. 8.2): aarch64: bpftool-debuginfo-4.18.0-193.60.2.el8_2.aarch64.rpm kernel-debug-debuginfo-4.18.0-193.60.2.el8_2.aarch64.rpm kernel-debuginfo-4.18.0-193.60.2.el8_2.aarch64.rpm kernel-debuginfo-common-aarch64-4.18.0-193.60.2.el8_2.aarch64.rpm kernel-tools-debuginfo-4.18.0-193.60.2.el8_2.aarch64.rpm kernel-tools-libs-devel-4.18.0-193.60.2.el8_2.aarch64.rpm perf-debuginfo-4.18.0-193.60.2.el8_2.aarch64.rpm python3-perf-debuginfo-4.18.0-193.60.2.el8_2.aarch64.rpm ppc64le: bpftool-debuginfo-4.18.0-193.60.2.el8_2.ppc64le.rpm kernel-debug-debuginfo-4.18.0-193.60.2.el8_2.ppc64le.rpm kernel-debuginfo-4.18.0-193.60.2.el8_2.ppc64le.rpm kernel-debuginfo-common-ppc64le-4.18.0-193.60.2.el8_2.ppc64le.rpm kernel-tools-debuginfo-4.18.0-193.60.2.el8_2.ppc64le.rpm kernel-tools-libs-devel-4.18.0-193.60.2.el8_2.ppc64le.rpm perf-debuginfo-4.18.0-193.60.2.el8_2.ppc64le.rpm python3-perf-debuginfo-4.18.0-193.60.2.el8_2.ppc64le.rpm x86_64: bpftool-debuginfo-4.18.0-193.60.2.el8_2.x86_64.rpm kernel-debug-debuginfo-4.18.0-193.60.2.el8_2.x86_64.rpm kernel-debuginfo-4.18.0-193.60.2.el8_2.x86_64.rpm kernel-debuginfo-common-x86_64-4.18.0-193.60.2.el8_2.x86_64.rpm kernel-tools-debuginfo-4.18.0-193.60.2.el8_2.x86_64.rpm kernel-tools-libs-devel-4.18.0-193.60.2.el8_2.x86_64.rpm perf-debuginfo-4.18.0-193.60.2.el8_2.x86_64.rpm python3-perf-debuginfo-4.18.0-193.60.2.el8_2.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/ 7. Contact: The Red Hat security contact is <secalert@redhat.com>. More contact details at https://access.redhat.com/security/team/contact/ Copyright 2021 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBYPdKddzjgjWX9erEAQhLHw/8CtsaptRIaXpqaAqj2dZCzmPJHC8iyNOj 5dmUgyNRCwyoUVIXRtGr4TBR+Bxi0Y37ofV1bAdK7igPDppxmbEANIR4NhOaktf3 w17HflEhh8us5fmTxYNlRa2++UIvuWBGfH4+kfODkSDCBgbb9Q2xIxPRXWQRvLjr ide7SRs9zF31KYoat9kWWDhMSZDitVlU2wvWsx1j40UD6a1sUx9M2Q/cCbcu8NSO 9kyVxyOhDHs72sbOLsbiwfDAYKmUjdkDVBY+5Rl2DbtxIz0jZOWSbHvhsu6ndpN4 iKxbcHVrfpMjQAX4KnDYIKB8PPHXzRcbQLRGSZWpAdGmPc/H+3vGTAXZJSDIi/61 +9OXWRn9PSkAR3WFNOPo1rru5WI7cncykx8jm5sCwzcnBGsgz+E8Exwf+MObnOqx OVMnSwU52kFdyDciwlXobjGtEdEMN/Jf/f+dM1KIJxj8YTgygzJQw/Z3fWeI/gvh fcqSeFjAN3+A+aVXn8NcaBPIEjAqdwEA9kvT8JxGo8co1KzmHxCZVpxnECYSsQuW qttiF50ohXwLbYklFG8Mt0pD04HmnsmLUvFZYK2m9MSfUsz4dFjgDnov8p7btGgu yJ/6Aul7C6TjZZvQG9fz6Id+mh4uPPMvQrVSQLrl68bOWpphyoRqzcTTFNFj1g+w gIkv6r9Alj4=hVNH -----END PGP SIGNATURE----- -- RHSA-announce mailing list RHSA-announce@redhat.com https://listman.redhat.com/mailman/listinfo/rhsa-announce . 8.1) - ppc64le, x86_64 3. Description: This is a kernel live patch module which is automatically loaded by the RPM post-install script to modify the code of a running kernel. (CVE-2021-33909) Michael Brown discovered that the Xen netback driver in the Linux kernel did not properly handle malformed packets from a network PV frontend, leading to a use-after-free vulnerability. ========================================================================== Ubuntu Security Notice USN-5018-1 July 20, 2021 linux, linux-aws, linux-aws-hwe, linux-azure, linux-azure-4.15, linux-gcp, linux-gcp-4.15, linux-hwe, linux-kvm, linux-oracle, linux-raspi2, linux-snapdragon vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 18.04 LTS - Ubuntu 16.04 ESM - Ubuntu 14.04 ESM Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux: Linux kernel - linux-aws: Linux kernel for Amazon Web Services (AWS) systems - linux-azure-4.15: Linux kernel for Microsoft Azure Cloud systems - linux-gcp-4.15: Linux kernel for Google Cloud Platform (GCP) systems - linux-kvm: Linux kernel for cloud environments - linux-oracle: Linux kernel for Oracle Cloud systems - linux-raspi2: Linux kernel for Raspberry Pi (V8) systems - linux-snapdragon: Linux kernel for Qualcomm Snapdragon processors - linux-aws-hwe: Linux kernel for Amazon Web Services (AWS-HWE) systems - linux-azure: Linux kernel for Microsoft Azure Cloud systems - linux-gcp: Linux kernel for Google Cloud Platform (GCP) systems - linux-hwe: Linux hardware enablement (HWE) kernel Details: It was discovered that the virtual file system implementation in the Linux kernel contained an unsigned to signed integer conversion error. A local attacker could use this to cause a denial of service (system crash) or execute arbitrary code. (CVE-2021-33909) Piotr Krysiuk discovered that the eBPF implementation in the Linux kernel did not properly enforce limits for pointer operations. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2021-33200) Mathy Vanhoef discovered that the Linux kernel’s WiFi implementation did not properly clear received fragments from memory in some situations. A physically proximate attacker could possibly use this issue to inject packets or expose sensitive information. (CVE-2020-24586) Mathy Vanhoef discovered that the Linux kernel’s WiFi implementation incorrectly handled encrypted fragments. A physically proximate attacker could possibly use this issue to decrypt fragments. (CVE-2020-24587) Mathy Vanhoef discovered that the Linux kernel’s WiFi implementation incorrectly handled EAPOL frames from unauthenticated senders. A physically proximate attacker could inject malicious packets to cause a denial of service (system crash). (CVE-2020-26139) Mathy Vanhoef discovered that the Linux kernel’s WiFi implementation could reassemble mixed encrypted and plaintext fragments. A physically proximate attacker could possibly use this issue to inject packets or exfiltrate selected fragments. (CVE-2020-26147) It was discovered that the bluetooth subsystem in the Linux kernel did not properly perform access control. An authenticated attacker could possibly use this to expose sensitive information. (CVE-2020-26558, CVE-2021-0129) Or Cohen and Nadav Markus discovered a use-after-free vulnerability in the nfc implementation in the Linux kernel. A privileged local attacker could use this issue to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2021-23134) Piotr Krysiuk discovered that the eBPF implementation in the Linux kernel did not properly prevent speculative loads in certain situations. A local attacker could use this to expose sensitive information (kernel memory). (CVE-2021-31829) It was discovered that a race condition in the kernel Bluetooth subsystem could lead to use-after-free of slab objects. An attacker could use this issue to possibly execute arbitrary code. (CVE-2021-32399) It was discovered that a use-after-free existed in the Bluetooth HCI driver of the Linux kernel. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2021-33034) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 18.04 LTS: linux-image-4.15.0-1078-oracle 4.15.0-1078.86 linux-image-4.15.0-1092-raspi2 4.15.0-1092.98 linux-image-4.15.0-1097-kvm 4.15.0-1097.99 linux-image-4.15.0-1106-gcp 4.15.0-1106.120 linux-image-4.15.0-1109-aws 4.15.0-1109.116 linux-image-4.15.0-1109-snapdragon 4.15.0-1109.118 linux-image-4.15.0-1121-azure 4.15.0-1121.134 linux-image-4.15.0-151-generic 4.15.0-151.157 linux-image-4.15.0-151-generic-lpae 4.15.0-151.157 linux-image-4.15.0-151-lowlatency 4.15.0-151.157 linux-image-aws-lts-18.04 4.15.0.1109.112 linux-image-azure-lts-18.04 4.15.0.1121.94 linux-image-gcp-lts-18.04 4.15.0.1106.125 linux-image-generic 4.15.0.151.139 linux-image-generic-lpae 4.15.0.151.139 linux-image-kvm 4.15.0.1097.93 linux-image-lowlatency 4.15.0.151.139 linux-image-oracle-lts-18.04 4.15.0.1078.88 linux-image-raspi2 4.15.0.1092.90 linux-image-snapdragon 4.15.0.1109.112 linux-image-virtual 4.15.0.151.139 Ubuntu 16.04 ESM: linux-image-4.15.0-1078-oracle 4.15.0-1078.86~16.04.1 linux-image-4.15.0-1106-gcp 4.15.0-1106.120~16.04.1 linux-image-4.15.0-1109-aws 4.15.0-1109.116~16.04.1 linux-image-4.15.0-1121-azure 4.15.0-1121.134~16.04.1 linux-image-4.15.0-151-generic 4.15.0-151.157~16.04.1 linux-image-4.15.0-151-lowlatency 4.15.0-151.157~16.04.1 linux-image-aws-hwe 4.15.0.1109.100 linux-image-azure 4.15.0.1121.112 linux-image-gcp 4.15.0.1106.107 linux-image-generic-hwe-16.04 4.15.0.151.146 linux-image-gke 4.15.0.1106.107 linux-image-lowlatency-hwe-16.04 4.15.0.151.146 linux-image-oem 4.15.0.151.146 linux-image-oracle 4.15.0.1078.66 linux-image-virtual-hwe-16.04 4.15.0.151.146 Ubuntu 14.04 ESM: linux-image-4.15.0-1121-azure 4.15.0-1121.134~14.04.1 linux-image-azure 4.15.0.1121.94 After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-5018-1 CVE-2020-24586, CVE-2020-24587, CVE-2020-26139, CVE-2020-26147, CVE-2020-26558, CVE-2021-0129, CVE-2021-23134, CVE-2021-31829, CVE-2021-32399, CVE-2021-33034, CVE-2021-33200, CVE-2021-33909 Package Information: https://launchpad.net/ubuntu/+source/linux/4.15.0-151.157 https://launchpad.net/ubuntu/+source/linux-aws/4.15.0-1109.116 https://launchpad.net/ubuntu/+source/linux-azure-4.15/4.15.0-1121.134 https://launchpad.net/ubuntu/+source/linux-gcp-4.15/4.15.0-1106.120 https://launchpad.net/ubuntu/+source/linux-kvm/4.15.0-1097.99 https://launchpad.net/ubuntu/+source/linux-oracle/4.15.0-1078.86 https://launchpad.net/ubuntu/+source/linux-raspi2/4.15.0-1092.98 https://launchpad.net/ubuntu/+source/linux-snapdragon/4.15.0-1109.118 . (CVE-2021-3653) Maxim Levitsky and Paolo Bonzini discovered that the KVM hypervisor implementation for AMD processors in the Linux kernel allowed a guest VM to disable restrictions on VMLOAD/VMSAVE in a nested guest. If you are running a kernel version earlier than the one listed below, please upgrade your kernel as soon as possible

Trust: 1.89

sources: NVD: CVE-2021-33909 // VULMON: CVE-2021-33909 // PACKETSTORM: 163578 // PACKETSTORM: 163589 // PACKETSTORM: 163590 // PACKETSTORM: 163594 // PACKETSTORM: 163596 // PACKETSTORM: 163597 // PACKETSTORM: 163598 // PACKETSTORM: 163599 // PACKETSTORM: 163602 // PACKETSTORM: 164155

AFFECTED PRODUCTS

vendor:linuxmodel:kernelscope:gteversion:4.20

Trust: 1.0

vendor:linuxmodel:kernelscope:gteversion:5.5

Trust: 1.0

vendor:oraclemodel:communications session border controllerscope:eqversion:9.0

Trust: 1.0

vendor:linuxmodel:kernelscope:gteversion:4.5

Trust: 1.0

vendor:fedoraprojectmodel:fedorascope:eqversion:34

Trust: 1.0

vendor:netappmodel:solidfirescope:eqversion: -

Trust: 1.0

vendor:linuxmodel:kernelscope:gteversion:3.16

Trust: 1.0

vendor:linuxmodel:kernelscope:gteversion:4.10

Trust: 1.0

vendor:debianmodel:linuxscope:eqversion:9.0

Trust: 1.0

vendor:oraclemodel:communications session border controllerscope:eqversion:8.4

Trust: 1.0

vendor:linuxmodel:kernelscope:gteversion:3.12.43

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:4.9.276

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:4.14.240

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:5.4.134

Trust: 1.0

vendor:linuxmodel:kernelscope:gteversion:5.11

Trust: 1.0

vendor:linuxmodel:kernelscope:gteversion:5.13

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:5.12.19

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:5.13.4

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:4.4.276

Trust: 1.0

vendor:linuxmodel:kernelscope:gteversion:4.15

Trust: 1.0

vendor:netappmodel:hci management nodescope:eqversion: -

Trust: 1.0

vendor:debianmodel:linuxscope:eqversion:10.0

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:3.13

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:5.10.52

Trust: 1.0

vendor:oraclemodel:communications session border controllerscope:eqversion:8.3

Trust: 1.0

vendor:oraclemodel:communications session border controllerscope:eqversion:8.2

Trust: 1.0

vendor:sonicwallmodel:sma1000scope:lteversion:12.4.2-02044

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:4.19.198

Trust: 1.0

sources: NVD: CVE-2021-33909

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2021-33909
value: HIGH

Trust: 1.0

CNNVD: CNNVD-202107-1534
value: HIGH

Trust: 0.6

VULMON: CVE-2021-33909
value: HIGH

Trust: 0.1

nvd@nist.gov: CVE-2021-33909
severity: HIGH
baseScore: 7.2
vectorString: AV:L/AC:L/AU:N/C:C/I:C/A:C
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 3.9
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.1

nvd@nist.gov: CVE-2021-33909
baseSeverity: HIGH
baseScore: 7.8
vectorString: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
attackVector: LOCAL
attackComplexity: LOW
privilegesRequired: LOW
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 1.8
impactScore: 5.9
version: 3.1

Trust: 1.0

sources: VULMON: CVE-2021-33909 // CNNVD: CNNVD-202107-1534 // NVD: CVE-2021-33909

PROBLEMTYPE DATA

problemtype:CWE-787

Trust: 1.0

problemtype:CWE-190

Trust: 1.0

sources: NVD: CVE-2021-33909

THREAT TYPE

local

Trust: 1.0

sources: PACKETSTORM: 163596 // PACKETSTORM: 163597 // PACKETSTORM: 163598 // PACKETSTORM: 163599 // CNNVD: CNNVD-202107-1534

TYPE

input validation error

Trust: 0.6

sources: CNNVD: CNNVD-202107-1534

PATCH

title:Linux kernel Enter the fix for the verification error vulnerabilityurl:http://123.124.177.30/web/xxk/bdxqById.tag?id=157416

Trust: 0.6

title:Amazon Linux AMI: ALAS-2021-1524url:https://vulmon.com/vendoradvisory?qidtp=amazon_linux_ami&qid=ALAS-2021-1524

Trust: 0.1

title:Debian Security Advisories: DSA-4941-1 linux -- security updateurl:https://vulmon.com/vendoradvisory?qidtp=debian_security_advisories&qid=fb9b5f5cc430f484f4420a11b7b87136

Trust: 0.1

title:Amazon Linux 2: ALAS2LIVEPATCH-2021-055url:https://vulmon.com/vendoradvisory?qidtp=amazon_linux2&qid=ALAS2LIVEPATCH-2021-055

Trust: 0.1

title:Amazon Linux 2: ALAS2KERNEL-5.10-2022-003url:https://vulmon.com/vendoradvisory?qidtp=amazon_linux2&qid=ALAS2KERNEL-5.10-2022-003

Trust: 0.1

title:Amazon Linux 2: ALAS2-2021-1691url:https://vulmon.com/vendoradvisory?qidtp=amazon_linux2&qid=ALAS2-2021-1691

Trust: 0.1

title:Amazon Linux 2: ALAS2LIVEPATCH-2021-057url:https://vulmon.com/vendoradvisory?qidtp=amazon_linux2&qid=ALAS2LIVEPATCH-2021-057

Trust: 0.1

title:Amazon Linux 2: ALAS2LIVEPATCH-2021-056url:https://vulmon.com/vendoradvisory?qidtp=amazon_linux2&qid=ALAS2LIVEPATCH-2021-056

Trust: 0.1

title:Arch Linux Advisories: [ASA-202107-48] linux: privilege escalationurl:https://vulmon.com/vendoradvisory?qidtp=arch_linux_advisories&qid=ASA-202107-48

Trust: 0.1

title:Arch Linux Advisories: [ASA-202107-50] linux-hardened: privilege escalationurl:https://vulmon.com/vendoradvisory?qidtp=arch_linux_advisories&qid=ASA-202107-50

Trust: 0.1

title:Amazon Linux 2: ALAS2KERNEL-5.4-2022-005url:https://vulmon.com/vendoradvisory?qidtp=amazon_linux2&qid=ALAS2KERNEL-5.4-2022-005

Trust: 0.1

title:Amazon Linux 2: ALAS2LIVEPATCH-2021-058url:https://vulmon.com/vendoradvisory?qidtp=amazon_linux2&qid=ALAS2LIVEPATCH-2021-058

Trust: 0.1

title:Amazon Linux 2: ALAS2LIVEPATCH-2021-059url:https://vulmon.com/vendoradvisory?qidtp=amazon_linux2&qid=ALAS2LIVEPATCH-2021-059

Trust: 0.1

title:Arch Linux Advisories: [ASA-202107-49] linux-zen: privilege escalationurl:https://vulmon.com/vendoradvisory?qidtp=arch_linux_advisories&qid=ASA-202107-49

Trust: 0.1

title:Arch Linux Advisories: [ASA-202107-51] linux-lts: privilege escalationurl:https://vulmon.com/vendoradvisory?qidtp=arch_linux_advisories&qid=ASA-202107-51

Trust: 0.1

title:Arch Linux Issues: url:https://vulmon.com/vendoradvisory?qidtp=arch_linux_issues&qid=CVE-2021-33909 log

Trust: 0.1

title:Siemens Security Advisories: Siemens Security Advisoryurl:https://vulmon.com/vendoradvisory?qidtp=siemens_security_advisories&qid=ec6577109e640dac19a6ddb978afe82d

Trust: 0.1

title:LinuxVulnerabilitiesurl:https://github.com/gitezri/LinuxVulnerabilities

Trust: 0.1

title: - url:https://github.com/Live-Hack-CVE/CVE-2021-33909

Trust: 0.1

title:CVE-2021-33909url:https://github.com/AmIAHuman/CVE-2021-33909

Trust: 0.1

title:CVE-2021-33909url:https://github.com/Liang2580/CVE-2021-33909

Trust: 0.1

title:cve-2021-33909url:https://github.com/baerwolf/cve-2021-33909

Trust: 0.1

title:CVE-2021-33909url:https://github.com/bbinfosec43/CVE-2021-33909

Trust: 0.1

title:deep-directoryurl:https://github.com/sfowl/deep-directory

Trust: 0.1

title:integer_compilation_flagsurl:https://github.com/mdulin2/integer_compilation_flags

Trust: 0.1

title:CVE-2021-33909url:https://github.com/AlAIAL90/CVE-2021-33909

Trust: 0.1

title:CVE-2021-33909url:https://github.com/ChrisTheCoolHut/CVE-2021-33909

Trust: 0.1

title: - url:https://github.com/knewbury01/codeql-workshop-integer-conversion

Trust: 0.1

title:kickstart-rhel8url:https://github.com/alexhaydock/kickstart-rhel8

Trust: 0.1

title:exploit_articlesurl:https://github.com/ChoKyuWon/exploit_articles

Trust: 0.1

title: - url:https://github.com/hardenedvault/ved

Trust: 0.1

title:SVG-advisoriesurl:https://github.com/EGI-Federation/SVG-advisories

Trust: 0.1

title: - url:https://github.com/makoto56/penetration-suite-toolkit

Trust: 0.1

sources: VULMON: CVE-2021-33909 // CNNVD: CNNVD-202107-1534

EXTERNAL IDS

db:NVDid:CVE-2021-33909

Trust: 2.7

db:PACKETSTORMid:164155

Trust: 1.7

db:OPENWALLid:OSS-SECURITY/2021/09/21/1

Trust: 1.6

db:OPENWALLid:OSS-SECURITY/2021/07/20/1

Trust: 1.6

db:OPENWALLid:OSS-SECURITY/2021/09/17/4

Trust: 1.6

db:OPENWALLid:OSS-SECURITY/2021/07/22/7

Trust: 1.6

db:OPENWALLid:OSS-SECURITY/2021/09/17/2

Trust: 1.6

db:OPENWALLid:OSS-SECURITY/2021/08/25/10

Trust: 1.6

db:PACKETSTORMid:165477

Trust: 1.6

db:PACKETSTORMid:163621

Trust: 1.6

db:PACKETSTORMid:163671

Trust: 1.6

db:PACKETSTORMid:163568

Trust: 0.6

db:PACKETSTORMid:163634

Trust: 0.6

db:PACKETSTORMid:163577

Trust: 0.6

db:PACKETSTORMid:163682

Trust: 0.6

db:AUSCERTid:ESB-2022.0060

Trust: 0.6

db:AUSCERTid:ESB-2022.3346

Trust: 0.6

db:AUSCERTid:ESB-2021.3796

Trust: 0.6

db:AUSCERTid:ESB-2021.2589

Trust: 0.6

db:AUSCERTid:ESB-2021.3070

Trust: 0.6

db:AUSCERTid:ESB-2021.2547

Trust: 0.6

db:AUSCERTid:ESB-2021.2461

Trust: 0.6

db:AUSCERTid:ESB-2021.2453

Trust: 0.6

db:AUSCERTid:ESB-2021.2749

Trust: 0.6

db:AUSCERTid:ESB-2021.2543

Trust: 0.6

db:AUSCERTid:ESB-2021.2597

Trust: 0.6

db:AUSCERTid:ESB-2021.2583

Trust: 0.6

db:AUSCERTid:ESB-2021.2444

Trust: 0.6

db:AUSCERTid:ESB-2021.2657

Trust: 0.6

db:AUSCERTid:ESB-2021.2691

Trust: 0.6

db:AUSCERTid:ESB-2021.2532

Trust: 0.6

db:AUSCERTid:ESB-2021.4089

Trust: 0.6

db:CS-HELPid:SB2021072222

Trust: 0.6

db:CS-HELPid:SB2021122404

Trust: 0.6

db:CS-HELPid:SB2021072291

Trust: 0.6

db:CS-HELPid:SB2021080304

Trust: 0.6

db:CS-HELPid:SB2021072623

Trust: 0.6

db:CS-HELPid:SB2022012748

Trust: 0.6

db:CNNVDid:CNNVD-202107-1534

Trust: 0.6

db:VULMONid:CVE-2021-33909

Trust: 0.1

db:PACKETSTORMid:163578

Trust: 0.1

db:PACKETSTORMid:163589

Trust: 0.1

db:PACKETSTORMid:163590

Trust: 0.1

db:PACKETSTORMid:163594

Trust: 0.1

db:PACKETSTORMid:163596

Trust: 0.1

db:PACKETSTORMid:163597

Trust: 0.1

db:PACKETSTORMid:163598

Trust: 0.1

db:PACKETSTORMid:163599

Trust: 0.1

db:PACKETSTORMid:163602

Trust: 0.1

sources: VULMON: CVE-2021-33909 // PACKETSTORM: 163578 // PACKETSTORM: 163589 // PACKETSTORM: 163590 // PACKETSTORM: 163594 // PACKETSTORM: 163596 // PACKETSTORM: 163597 // PACKETSTORM: 163598 // PACKETSTORM: 163599 // PACKETSTORM: 163602 // PACKETSTORM: 164155 // CNNVD: CNNVD-202107-1534 // NVD: CVE-2021-33909

REFERENCES

url:http://packetstormsecurity.com/files/165477/kernel-live-patch-security-notice-lsn-0083-1.html

Trust: 2.2

url:http://packetstormsecurity.com/files/163671/kernel-live-patch-security-notice-lsn-0079-1.html

Trust: 2.2

url:http://packetstormsecurity.com/files/164155/kernel-live-patch-security-notice-lsn-0081-1.html

Trust: 2.2

url:https://github.com/torvalds/linux/commit/8cae8cd89f05f6de223d63e6d15e31c8ba9cf53b

Trust: 1.6

url:http://www.openwall.com/lists/oss-security/2021/09/17/2

Trust: 1.6

url:https://lists.debian.org/debian-lts-announce/2021/07/msg00015.html

Trust: 1.6

url:http://www.openwall.com/lists/oss-security/2021/09/17/4

Trust: 1.6

url:https://www.oracle.com/security-alerts/cpujan2022.html

Trust: 1.6

url:http://www.openwall.com/lists/oss-security/2021/08/25/10

Trust: 1.6

url:https://lists.debian.org/debian-lts-announce/2021/07/msg00014.html

Trust: 1.6

url:https://www.openwall.com/lists/oss-security/2021/07/20/1

Trust: 1.6

url:http://www.openwall.com/lists/oss-security/2021/09/21/1

Trust: 1.6

url:http://www.openwall.com/lists/oss-security/2021/07/22/7

Trust: 1.6

url:http://packetstormsecurity.com/files/163621/sequoia-a-deep-root-in-linuxs-filesystem-layer.html

Trust: 1.6

url:https://lists.debian.org/debian-lts-announce/2021/07/msg00016.html

Trust: 1.6

url:https://www.debian.org/security/2021/dsa-4941

Trust: 1.6

url:https://psirt.global.sonicwall.com/vuln-detail/snwlid-2022-0015

Trust: 1.6

url:https://security.netapp.com/advisory/ntap-20210819-0004/

Trust: 1.6

url:https://cdn.kernel.org/pub/linux/kernel/v5.x/changelog-5.13.4

Trust: 1.6

url:https://access.redhat.com/security/cve/cve-2021-33909

Trust: 1.1

url:https://nvd.nist.gov/vuln/detail/cve-2021-33909

Trust: 1.0

url:https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/z4uhhigiso3fvrf4cqnjs4ika25atsfu/

Trust: 1.0

url:https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/z4uhhigiso3fvrf4cqnjs4ika25atsfu/

Trust: 0.6

url:https://packetstormsecurity.com/files/163634/red-hat-security-advisory-2021-2736-01.html

Trust: 0.6

url:https://device.harmonyos.com/cn/docs/security/update/security-bulletins-visions-202110-0000001162597918

Trust: 0.6

url:https://vigilance.fr/vulnerability/linux-kernel-integer-overflow-via-seq-set-overflow-35938

Trust: 0.6

url:https://packetstormsecurity.com/files/163577/red-hat-security-advisory-2021-2733-01.html

Trust: 0.6

url:https://www.cybersecurity-help.cz/vdb/sb2021080304

Trust: 0.6

url:https://www.cybersecurity-help.cz/vdb/sb2021072623

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2021.2657

Trust: 0.6

url:https://source.android.com/security/bulletin/2021-12-01

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2022.0060

Trust: 0.6

url:https://www.cybersecurity-help.cz/vdb/sb2021072222

Trust: 0.6

url:https://www.ibm.com/support/pages/node/6490825

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2021.2583

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2021.2461

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2021.2444

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2021.2543

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2021.4089

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2021.3796

Trust: 0.6

url:https://packetstormsecurity.com/files/163568/red-hat-security-advisory-2021-2734-01.html

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2021.3070

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2022.3346

Trust: 0.6

url:https://www.cybersecurity-help.cz/vdb/sb2021072291

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2021.2547

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2021.2589

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2021.2749

Trust: 0.6

url:https://packetstormsecurity.com/files/163682/red-hat-security-advisory-2021-2763-01.html

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2021.2691

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2021.2532

Trust: 0.6

url:https://www.ibm.com/support/pages/node/6525250

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2021.2597

Trust: 0.6

url:https://www.cybersecurity-help.cz/vdb/sb2022012748

Trust: 0.6

url:https://www.auscert.org.au/bulletins/esb-2021.2453

Trust: 0.6

url:https://www.cybersecurity-help.cz/vdb/sb2021122404

Trust: 0.6

url:https://listman.redhat.com/mailman/listinfo/rhsa-announce

Trust: 0.5

url:https://access.redhat.com/security/updates/classification/#important

Trust: 0.5

url:https://access.redhat.com/articles/11258

Trust: 0.5

url:https://access.redhat.com/security/team/key/

Trust: 0.5

url:https://access.redhat.com/security/vulnerabilities/rhsb-2021-006

Trust: 0.5

url:https://bugzilla.redhat.com/):

Trust: 0.5

url:https://access.redhat.com/security/team/contact/

Trust: 0.5

url:https://nvd.nist.gov/vuln/detail/cve-2021-33034

Trust: 0.5

url:https://access.redhat.com/security/cve/cve-2021-33034

Trust: 0.3

url:https://nvd.nist.gov/vuln/detail/cve-2021-23134

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2021-32399

Trust: 0.2

url:https://nvd.nist.gov/vuln/detail/cve-2020-26558

Trust: 0.2

url:https://access.redhat.com/errata/rhsa-2021:2735

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-12362

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2021-3347

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2020-12362

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2021-3347

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2020-35508

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-25704

Trust: 0.1

url:https://access.redhat.com/errata/rhsa-2021:2718

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-26541

Trust: 0.1

url:https://access.redhat.com/security/cve/cve-2020-35508

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2020-26541

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2020-25704

Trust: 0.1

url:https://access.redhat.com/errata/rhsa-2021:2723

Trust: 0.1

url:https://access.redhat.com/errata/rhsa-2021:2727

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2021-3564

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-oem-5.10/5.10.0-1038.40

Trust: 0.1

url:https://ubuntu.com/security/notices/usn-5015-1

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2021-3573

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2021-3587

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2021-28691

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-hwe-5.8/5.8.0-63.71~20.04.1

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-aws/5.8.0-1041.43

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-gcp/5.8.0-1038.40

Trust: 0.1

url:https://ubuntu.com/security/notices/usn-5016-1

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-aws-5.8/5.8.0-1041.43~20.04.1

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux/5.8.0-63.71

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-oracle-5.8/5.8.0-1037.38~20.04.1

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-azure/5.8.0-1039.42

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-raspi/5.8.0-1032.35

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2021-3506

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-oracle/5.8.0-1037.38

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-azure-5.8/5.8.0-1039.42~20.04.1

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-kvm/5.8.0-1033.36

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-gcp-5.8/5.8.0-1038.40~20.04.1

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-gkeop/5.4.0-1021.22

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-gcp-5.4/5.4.0-1049.53~18.04.1

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-gcp/5.4.0-1049.53

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-oracle-5.4/5.4.0-1052.56~18.04.1

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-raspi/5.4.0-1041.45

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-kvm/5.4.0-1044.46

Trust: 0.1

url:https://ubuntu.com/security/notices/usn-5017-1

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-gke-5.4/5.4.0-1049.52~18.04.1

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-hwe-5.4/5.4.0-80.90~18.04.1

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-aws-5.4/5.4.0-1054.57~18.04.1

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-azure/5.4.0-1055.57

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-oracle/5.4.0-1052.56

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-gke/5.4.0-1049.52

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-azure-5.4/5.4.0-1055.57~18.04.1

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-aws/5.4.0-1054.57

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux/5.4.0-80.90

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-gkeop-5.4/5.4.0-1021.22~18.04.1

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-raspi-5.4/5.4.0-1041.45~18.04.1

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux/4.15.0-151.157

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-kvm/4.15.0-1097.99

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-oracle/4.15.0-1078.86

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-gcp-4.15/4.15.0-1106.120

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2020-26147

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2021-33200

Trust: 0.1

url:https://ubuntu.com/security/notices/usn-5018-1

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2020-24586

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-aws/4.15.0-1109.116

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-raspi2/4.15.0-1092.98

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-azure-4.15/4.15.0-1121.134

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2020-24587

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2021-31829

Trust: 0.1

url:https://launchpad.net/ubuntu/+source/linux-snapdragon/4.15.0-1109.118

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2020-26139

Trust: 0.1

url:https://access.redhat.com/errata/rhsa-2021:2720

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2021-22555

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2021-3653

Trust: 0.1

url:https://nvd.nist.gov/vuln/detail/cve-2021-3656

Trust: 0.1

url:https://lists.ubuntu.com/mailman/listinfo/ubuntu-security-announce

Trust: 0.1

sources: PACKETSTORM: 163578 // PACKETSTORM: 163589 // PACKETSTORM: 163590 // PACKETSTORM: 163594 // PACKETSTORM: 163596 // PACKETSTORM: 163597 // PACKETSTORM: 163598 // PACKETSTORM: 163599 // PACKETSTORM: 163602 // PACKETSTORM: 164155 // CNNVD: CNNVD-202107-1534 // NVD: CVE-2021-33909

CREDITS

Red Hat

Trust: 0.5

sources: PACKETSTORM: 163578 // PACKETSTORM: 163589 // PACKETSTORM: 163590 // PACKETSTORM: 163594 // PACKETSTORM: 163602

SOURCES

db:VULMONid:CVE-2021-33909
db:PACKETSTORMid:163578
db:PACKETSTORMid:163589
db:PACKETSTORMid:163590
db:PACKETSTORMid:163594
db:PACKETSTORMid:163596
db:PACKETSTORMid:163597
db:PACKETSTORMid:163598
db:PACKETSTORMid:163599
db:PACKETSTORMid:163602
db:PACKETSTORMid:164155
db:CNNVDid:CNNVD-202107-1534
db:NVDid:CVE-2021-33909

LAST UPDATE DATE

2025-07-13T20:29:30.658000+00:00


SOURCES UPDATE DATE

db:VULMONid:CVE-2021-33909date:2023-11-07T00:00:00
db:CNNVDid:CNNVD-202107-1534date:2022-12-12T00:00:00
db:NVDid:CVE-2021-33909date:2023-11-07T03:35:56.050

SOURCES RELEASE DATE

db:VULMONid:CVE-2021-33909date:2021-07-20T00:00:00
db:PACKETSTORMid:163578date:2021-07-21T16:02:03
db:PACKETSTORMid:163589date:2021-07-21T16:03:31
db:PACKETSTORMid:163590date:2021-07-21T16:03:37
db:PACKETSTORMid:163594date:2021-07-21T16:04:11
db:PACKETSTORMid:163596date:2021-07-21T16:04:22
db:PACKETSTORMid:163597date:2021-07-21T16:04:29
db:PACKETSTORMid:163598date:2021-07-21T16:04:36
db:PACKETSTORMid:163599date:2021-07-21T16:04:42
db:PACKETSTORMid:163602date:2021-07-21T16:05:06
db:PACKETSTORMid:164155date:2021-09-14T16:28:49
db:CNNVDid:CNNVD-202107-1534date:2021-07-20T00:00:00
db:NVDid:CVE-2021-33909date:2021-07-20T19:15:09.747