CVE-2021-20239

Updated: 2026-02-08 01:02:54.812855

Description:

A flaw was found in the Linux kernel in versions before 5.4.92 in the BPF protocol. This flaw allows an attacker with a local account to leak information about kernel internal addresses. The highest threat from this vulnerability is to confidentiality.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x LOW 2.1
CVSS Version 3.x LOW 3.3

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

CentOS 6 ELS kernel 2.6.32 3.3 LOW Not Vulnerable 2021-11-02 14:03:31
CentOS 7 ELS kernel 3.10.0 3.3 LOW Ignored 2023-09-19 09:30:07 Ignored due to low severity
CentOS 8.4 ELS kernel 4.18.0 3.3 LOW Released CLSA-2022:1651145959 2022-04-28 16:00:01
CentOS 8.5 ELS kernel 4.18.0 3.3 LOW Already Fixed 2025-10-24 07:18:33
CloudLinux 6 ELS kernel 2.6.32 3.3 LOW Ignored 2022-01-27 11:20:17 Ignored due to low severity
Oracle Linux 6 ELS kernel 2.6.32 3.3 LOW Ignored 2022-01-27 11:20:17 Ignored due to low severity
Ubuntu 16.04 ELS linux-hwe 4.15.0 3.3 LOW Ignored 2022-09-28 05:02:43 Ignored due to low severity
Ubuntu 16.04 ELS linux 4.4.0 3.3 LOW Ignored 2022-01-27 11:20:17 Ignored due to low severity
Ubuntu 18.04 ELS linux 4.15.0 3.3 LOW Ignored 2023-03-02 04:04:01 Ignored due to low severity