CISA Known Exploited Vulnerability

CVE-2021-22600

Linux · Kernel

Linux Kernel Privilege Escalation Vulnerability

Date added
BOD 22-01 due date
CWE CWE-415
Ransomware Unknown

CISA description

Linux Kernel contains a flaw in the packet socket (AF_PACKET) implementation which could lead to incorrectly freeing memory. A local user could exploit this for denial-of-service (DoS) or possibly for privilege escalation.

Required action

Apply updates per vendor instructions.