CVE-2021-28964: Race Condition
A race condition was discovered in getoldroot in fs/btrfs/ctree.c in the Linux kernel through 5.11.8. It allows attackers to cause a denial of service (BUG) because of a lack of locking on an extent buffer before a cloning operation, aka CID-dbcc7d57bffc.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2021-28964?
The severity of CVE-2021-28964 is classified as high due to its potential to cause denial of service.
How do I fix CVE-2021-28964?
To fix CVE-2021-28964, update to a patched version of the Linux kernel, such as 5.10.223-1 or later.
Which versions of the Linux kernel are affected by CVE-2021-28964?
CVE-2021-28964 affects the Linux kernel versions up to and including 5.11.8.
What types of systems are impacted by CVE-2021-28964?
CVE-2021-28964 impacts systems running unpatched versions of the Linux kernel, as well as specific Fedora and Debian distributions.
Is there a workaround for CVE-2021-28964?
There is no specific known workaround for CVE-2021-28964 besides applying the appropriate kernel updates.