Lucene search

K
ubuntucveUbuntu.comUB:CVE-2021-4002
HistoryNov 26, 2021 - 12:00 a.m.

CVE-2021-4002

2021-11-2600:00:00
ubuntu.com
ubuntu.com
58

3.6 Low

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:P/A:N

4.4 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N

0.0004 Low

EPSS

Percentile

9.9%

A memory leak flaw in the Linux kernel’s hugetlbfs memory usage was found
in the way the user maps some regions of memory twice using shmget() which
are aligned to PUD alignment with the fault of some of the memory pages. A
local user could use this flaw to get unauthorized access to some data.

OSVersionArchitecturePackageVersionFilename
ubuntu18.04noarchlinux< 4.15.0-166.174UNKNOWN
ubuntu20.04noarchlinux< 5.4.0-92.103UNKNOWN
ubuntu21.04noarchlinux< 5.11.0-44.48UNKNOWN
ubuntu21.10noarchlinux< 5.13.0-23.23UNKNOWN
ubuntu14.04noarchlinux< 3.13.0-189.240UNKNOWN
ubuntu16.04noarchlinux< 4.4.0-218.251UNKNOWN
ubuntu18.04noarchlinux-aws< 4.15.0-1118.125UNKNOWN
ubuntu20.04noarchlinux-aws< 5.4.0-1061.64UNKNOWN
ubuntu21.04noarchlinux-aws< 5.11.0-1023.24UNKNOWN
ubuntu21.10noarchlinux-aws< 5.13.0-1008.9UNKNOWN
Rows per page:
1-10 of 721

3.6 Low

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:P/A:N

4.4 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N

0.0004 Low

EPSS

Percentile

9.9%