USN-5217-1

Advisory lineage Upstream: 4 Downstream: 0
Published: 11 Jan 2022, 04:56
Last modified:04 Feb 2026, 02:39

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

11 Jan 2022, 04:56
Published
Vulnerability first disclosed
04 Feb 2026, 02:39
Last Modified
Vulnerability information updated

Description

linux-oem-5.14 vulnerabilities It was discovered that the NFS server implementation in the Linux kernel contained an out-of-bounds write vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2021-4090) It was discovered that the eBPF implementation in the Linux kernel did not properly validate the memory size of certain ring buffer operation arguments. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2021-4204)

Affected Systems

  • ubuntulinux-oem-5.14

    < 5.14.0-1018.19

References (4)