CVE-2021-22600

Aliases:UBUNTU-CVE-2021-22600DEBIAN-CVE-2021-22600
Analyzed
Published: 26 Jan 2022, 00:00
Last modified:21 Oct 2025, 23:15

Vulnerability Summary

Overall Risk (default)
medium
30/100
CVSS Score
7.2 HIGH
v2.0 (nvd)
EPSS Score
6.08% LOW
6% probability +5.93%
KEV
Listed
CISA
1 listing
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

26 Jan 2022, 00:00
Published
Vulnerability first disclosed
11 Apr 2022, 00:00
Added to CISA KEV
Linux Kernel Privilege Escalation Vulnerability
02 May 2022, 00:00
CISA Remediation Due
Apply updates per vendor instructions.
21 Oct 2025, 23:15
Last Modified
Vulnerability information updated

Description

A double free bug in packet_set_ring() in net/packet/af_packet.c can be exploited by a local user through crafted syscalls to escalate privileges or deny service. We recommend upgrading kernel past the effected versions or rebuilding past ec6af094ea28f0f2dda1a6a33b14cd57e36a9755

CVSS Metrics

  • v3.1MEDIUMScore: 6.6CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:C/C:L/I:L/A:H
  • v3.1HIGHScore: 7CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
  • v2.0HIGHScore: 7.2AV:L/AC:L/Au:N/C:C/I:C/A:C

EPSS Trends

Current EPSS score: 6.08% Percentile: 93%

Techniques & Countermeasures

  • CWE-415Double Free

    The product calls free() twice on the same memory address.

Affected Systems

  • debianlinux

    < 5.10.92-1 | < 5.15.15-1 | < 5.15.15-1 | < 5.15.15-1

  • ubuntulinux

    < 4.15.0-169.177 | < 5.4.0-100.113

  • ubuntulinux-aws

    < 4.15.0-1121.129 | < 5.4.0-1066.69

  • ubuntulinux-aws-5.0

    all

  • ubuntulinux-aws-5.11

    all

  • ubuntulinux-aws-5.13

    < 5.13.0-1014.15~20.04.1

  • ubuntulinux-aws-5.3

    all

  • ubuntulinux-aws-5.4

    < 5.4.0-1066.69~18.04.1

  • ubuntulinux-aws-5.8

    all

  • ubuntulinux-aws-fips

    < 4.15.0-2061.63 | < 5.4.0-1069.73+fips2 | all

  • ubuntulinux-aws-hwe

    < 4.15.0-1120.128~16.04.1

  • ubuntulinux-azure

    < 4.15.0-1131.144~14.04.1 | < 4.15.0-1131.144~16.04.1 | all | < 5.4.0-1070.73

  • ubuntulinux-azure-4.15

    < 4.15.0-1131.144

  • ubuntulinux-azure-5.11

    all

  • ubuntulinux-azure-5.13

    < 5.13.0-1014.16~20.04.1

  • ubuntulinux-azure-5.3

    all

  • ubuntulinux-azure-5.4

    < 5.4.0-1070.73~18.04.1

  • ubuntulinux-azure-5.8

    all

  • ubuntulinux-azure-edge

    all

  • ubuntulinux-azure-fips

    < 4.15.0-2043.47 | < 5.4.0-1073.76+fips1 | all

  • ubuntulinux-bluefield

    all | < 5.4.0-1028.31

  • ubuntulinux-dell300x

    < 4.15.0-1035.40

  • ubuntulinux-fips

    < 4.15.0-1078.87 | all | < 5.4.0-1043.49

  • ubuntulinux-gcp

    < 4.15.0-1116.130~16.04.1 | all | < 5.4.0-1065.69

  • ubuntulinux-gcp-4.15

    < 4.15.0-1116.130

  • ubuntulinux-gcp-5.11

    all

  • ubuntulinux-gcp-5.13

    < 5.13.0-1015.18~20.04.1

  • ubuntulinux-gcp-5.3

    all

  • ubuntulinux-gcp-5.4

    < 5.4.0-1065.69~18.04.1

  • ubuntulinux-gcp-5.8

    all

  • ubuntulinux-gcp-fips

    < 4.15.0-2026.28 | < 5.4.0-1067.71~20.04.1 | all

  • ubuntulinux-gke

    < 5.4.0-1061.64

  • ubuntulinux-gke-4.15

    all

  • ubuntulinux-gke-5.4

    < 5.4.0-1061.64~18.04.1

  • ubuntulinux-gkeop

    < 5.4.0-1034.35

  • ubuntulinux-gkeop-5.4

    < 5.4.0-1034.35~18.04.1

  • ubuntulinux-hwe

    < 4.15.0-169.177~16.04.1 | all

  • ubuntulinux-hwe-5.11

    all

  • ubuntulinux-hwe-5.13

    < 5.13.0-30.33~20.04.1

  • ubuntulinux-hwe-5.4

    < 5.4.0-100.113~18.04.1

  • ubuntulinux-hwe-5.8

    all

  • ubuntulinux-hwe-edge

    all

  • ubuntulinux-ibm

    < 5.4.0-1015.16

  • ubuntulinux-ibm-5.4

    < 5.4.0-1015.16~18.04.1

  • ubuntulinux-intel-5.13

    all

  • ubuntulinux-intel-iot-realtime

    all

  • ubuntulinux-kvm

    < 4.15.0-1107.109 | < 5.4.0-1056.58

  • ubuntulinux-oem

    all

  • ubuntulinux-oem-5.10

    all

  • ubuntulinux-oem-5.13

    all

Showing first 50 affected entries in server-rendered view.

References (16)