CVE-2021-38202

Updated: 2024-11-24 04:39:46.432963

Description:

fs/nfsd/trace.h in the Linux kernel before 5.13.4 might allow remote attackers to cause a denial of service (out-of-bounds read in strlen) by sending NFS traffic when the trace event framework is being used for nfsd.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x MEDIUM 5
CVSS Version 3.x HIGH 7.5

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

CentOS 6 ELS kernel 2.6.32 7.5 HIGH Not Vulnerable 2021-12-09 07:57:12
CentOS 7 ELS kernel 3.10.0 7.5 HIGH Not Vulnerable 2023-11-02 09:35:40
CentOS 8.4 ELS kernel 4.18.0 7.5 HIGH Not Vulnerable 2022-02-15 12:04:42
CentOS 8.5 ELS kernel 4.18.0 7.5 HIGH Ignored 2022-02-21 05:39:42
CloudLinux 6 ELS kernel 2.6.32 7.5 HIGH Not Vulnerable 2022-03-30 18:50:54
Oracle Linux 6 ELS kernel 2.6.32 7.5 HIGH Not Vulnerable 2022-03-30 18:50:54
Ubuntu 16.04 ELS linux-hwe 4.15.0 7.5 HIGH Not Vulnerable 2022-10-04 14:02:43
Ubuntu 16.04 ELS linux 4.4.0 7.5 HIGH Not Vulnerable 2022-02-17 08:55:44
Ubuntu 18.04 ELS linux 4.15.0 7.5 HIGH Not Vulnerable 2023-08-28 21:18:45