Lucene search

K
f5F5F5:K70023694
HistoryOct 21, 2022 - 12:00 a.m.

K70023694 : Linux kernel vulnerability CVE-2021-4154

2022-10-2100:00:00
my.f5.com
26
linux kernel
use-after-free
cgroup1_parse_param
cve-2021-4154
privilege escalation
container breakout
denial of service

AI Score

6.6

Confidence

High

EPSS

0

Percentile

5.1%

Security Advisory Description

A use-after-free flaw was found in cgroup1_parse_param in kernel/cgroup/cgroup-v1.c in the Linux kernel’s cgroup v1 parser. A local attacker with a user privilege could cause a privilege escalation by exploiting the fsconfig syscall parameter leading to a container breakout and a denial of service on the system. (CVE-2021-4154)

Impact

There is no impact; F5 products are not affected by this vulnerability.