CVE-2021-38300
Last modified
CVE-2021-38300 is a high-severity vulnerability rated 7.8/10 on the CVSS scale. arch/mips/net/bpf_jit.c in the Linux kernel before 5.4.10 can generate undesirable machine code when transforming unprivileged cBPF programs, allowing execution of arbitrary code within the kernel context. This occurs because conditional branches can exceed the 128 KB limit of the MIPS architecture.. EPSS estimates a 0.58% chance of exploitation in the next 30 days.
Description
arch/mips/net/bpf_jit.c in the Linux kernel before 5.4.10 can generate undesirable machine code when transforming unprivileged cBPF programs, allowing execution of arbitrary code within the kernel context. This occurs because conditional branches can exceed the 128 KB limit of the MIPS architecture.
Metrics
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | >= 3.16, < 4.14.251 |
| Linux | Linux Kernel | >= 4.15, < 4.19.211 |
| Linux | Linux Kernel | >= 4.20, < 5.4.153 |
| Linux | Linux Kernel | >= 5.5, < 5.10.71 |
| Linux | Linux Kernel | >= 5.11, < 5.14.10 |
| Netapp | Cloud Backup | All versions |
| Netapp | H410c Firmware | All versions |
| Netapp | H300s Firmware | All versions |
| Netapp | H500s Firmware | All versions |
| Netapp | H700s Firmware | All versions |
| Netapp | H300e Firmware | All versions |
| Netapp | H500e Firmware | All versions |
| Netapp | H700e Firmware | All versions |
| Netapp | H410s Firmware | All versions |
| Debian | Debian Linux | 9.0 |
| Debian | Debian Linux | 10.0 |
References
- http://www.openwall.com/lists/oss-security/2021/09/15/5Mailing List, Patch, Third Party Advisory
- https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.14.10Mailing List, Vendor Advisory
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=37cb28ec7d3a36a5bace7063a3dba633ab110f8bExploit, Mailing List, Patch, Vendor Advisory
- https://lists.debian.org/debian-lts-announce/2022/03/msg00012.htmlThird Party Advisory
- https://security.netapp.com/advisory/ntap-20211008-0003/Third Party Advisory
- https://www.debian.org/security/2022/dsa-5096Third Party Advisory
- http://www.openwall.com/lists/oss-security/2021/09/15/5Mailing List, Patch, Third Party Advisory
- https://cdn.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.14.10Mailing List, Vendor Advisory
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=37cb28ec7d3a36a5bace7063a3dba633ab110f8bExploit, Mailing List, Patch, Vendor Advisory
- https://lists.debian.org/debian-lts-announce/2022/03/msg00012.htmlThird Party Advisory
- https://security.netapp.com/advisory/ntap-20211008-0003/Third Party Advisory
- https://www.debian.org/security/2022/dsa-5096Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2021-38300?
How severe is CVE-2021-38300?
How do I fix CVE-2021-38300?
Are you affected by CVE-2021-38300?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
