AVG-1879 - linux - Arch Linux


AVG-1879 log

Package linux
Status Vulnerable
Severity Medium
Type multiple issues
Affected 5.14.10.arch1-1
Fixed Unknown
Current 5.14.11.arch1-1 [testing]
5.14.10.arch1-1 [core]
Ticket Create
Created Mon Apr 26 22:07:08 2021
Issue Severity Remote Type Description
CVE-2021-41864 Medium No Arbitrary code execution
prealloc_elems_and_freelist in kernel/bpf/stackmap.c in the Linux kernel allows unprivileged users to trigger an eBPF multiplication integer overflow with a...
CVE-2021-3764 Low No Denial of service
A memory leak in the ccp_run_aes_gcm_cmd() function in drivers/crypto/ccp/ccp-ops.c in the Linux kernel allows attackers to cause a denial of service...
CVE-2021-3759 Low No Denial of service
A memory overflow was found in the Linux kernel ipc functionality of the memcg subsystem in the way user calls semget for many times creating semaphores. A...
CVE-2021-3752 Medium No Arbitrary code execution
A use after free vulnerability has been found in the Linux kernel's bluetooth module.
CVE-2021-3744 Low No Denial of service
A memory leak in the ccp_run_aes_gcm_cmd() function in drivers/crypto/ccp/ccp-ops.c in the Linux kernel allows attackers to cause a denial of service...
CVE-2021-3669 Low No Denial of service
A security issue was found in the Linux kernel. Reading /proc/sysvipc/shm does not scale with large shared memory segment counts, which could lead to...
CVE-2021-3640 Medium No Arbitrary code execution
A use after free vulnerability has been found in sco_send_frame() in the Bluetooth stack of the Linux kernel, similar to CVE-2021-3573. A local attacker...
CVE-2021-3542 Medium No Privilege escalation
A heap-based buffer overflow security issue was found in the Linux kernel FireDTV media card driver, where the user calls the CA_SEND_MSG ioctl. This flaw...