First published: Wed Sep 29 2021(Updated: )
A use-after-free read flaw was found in sock_getsockopt() in net/core/sock.c due to SO_PEERCRED and SO_PEERGROUPS race with listen() (and connect()) in the Linux kernel. In this flaw, an attacker with a user privileges may crash the system or leak internal kernel information.
Credit: secalert@redhat.com secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/kernel-rt | <0:4.18.0-372.9.1.rt7.166.el8 | 0:4.18.0-372.9.1.rt7.166.el8 |
redhat/kernel | <0:4.18.0-372.9.1.el8 | 0:4.18.0-372.9.1.el8 |
redhat/kernel-rt | <0:4.18.0-305.57.1.rt7.129.el8_4 | 0:4.18.0-305.57.1.rt7.129.el8_4 |
redhat/kernel | <0:4.18.0-305.57.1.el8_4 | 0:4.18.0-305.57.1.el8_4 |
redhat/kernel | <5.15 | 5.15 |
Linux Linux kernel | <5.15 | |
Linux Linux kernel | =5.15 | |
Linux Linux kernel | =5.15-rc1 | |
Linux Linux kernel | =5.15-rc2 | |
Linux Linux kernel | =5.15-rc3 | |
Netapp Active Iq Unified Manager Vmware Vsphere | ||
NetApp E-Series SANtricity OS Controller | >=11.0.0<=11.70.2 | |
Netapp Element Software | ||
Netapp Hci Management Node | ||
Netapp Solidfire | ||
All of | ||
Netapp Bootstrap Os | ||
Netapp Hci Compute Node | ||
All of | ||
Netapp A700s Firmware | ||
Netapp A700s | ||
All of | ||
Netapp H300s Firmware | ||
Netapp H300s | ||
All of | ||
Netapp H500s Firmware | ||
Netapp H500s | ||
All of | ||
Netapp H700s Firmware | ||
Netapp H700s | ||
All of | ||
Netapp H410s Firmware | ||
Netapp H410s | ||
All of | ||
Netapp H410c Firmware | ||
Netapp H410c | ||
Oracle Communications Cloud Native Core Binding Support Function | =22.1.3 | |
Oracle Communications Cloud Native Core Network Exposure Function | =22.1.1 | |
Oracle Communications Cloud Native Core Policy | =22.2.0 | |
Netapp Bootstrap Os | ||
Netapp Hci Compute Node | ||
Netapp A700s Firmware | ||
Netapp A700s | ||
Netapp H300s Firmware | ||
Netapp H300s | ||
Netapp H500s Firmware | ||
Netapp H500s | ||
Netapp H700s Firmware | ||
Netapp H700s | ||
Netapp H410s Firmware | ||
Netapp H410s | ||
Netapp H410c Firmware | ||
Netapp H410c | ||
ubuntu/linux | <4.15.0-163.171 | 4.15.0-163.171 |
ubuntu/linux | <5.4.0-91.102 | 5.4.0-91.102 |
ubuntu/linux | <5.13.0-23.23 | 5.13.0-23.23 |
ubuntu/linux | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux | <4.4.0-239.273 | 4.4.0-239.273 |
ubuntu/linux-aws | <4.15.0-1116.123 | 4.15.0-1116.123 |
ubuntu/linux-aws | <5.4.0-1060.63 | 5.4.0-1060.63 |
ubuntu/linux-aws | <5.13.0-1008.9 | 5.13.0-1008.9 |
ubuntu/linux-aws | <4.4.0-1117.123 | 4.4.0-1117.123 |
ubuntu/linux-aws | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-aws | <4.4.0-1155.170 | 4.4.0-1155.170 |
ubuntu/linux-aws-5.0 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-aws-5.11 | <5.11.0-1023.24~20.04.1 | 5.11.0-1023.24~20.04.1 |
ubuntu/linux-aws-5.11 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-aws-5.13 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-aws-5.15 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-aws-5.3 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-aws-5.4 | <5.4.0-1060.63~18.04.1 | 5.4.0-1060.63~18.04.1 |
ubuntu/linux-aws-5.4 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-aws-5.8 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-aws-6.5 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-aws-fips | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-aws-hwe | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-aws-hwe | <4.15.0-1116.123~16.04.1 | 4.15.0-1116.123~16.04.1 |
ubuntu/linux-azure | <5.4.0-1064.67 | 5.4.0-1064.67 |
ubuntu/linux-azure | <5.13.0-1009.10 | 5.13.0-1009.10 |
ubuntu/linux-azure | <4.15.0-1127.140~14.04.1 | 4.15.0-1127.140~14.04.1 |
ubuntu/linux-azure | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-azure | <4.15.0-1127.140~16.04.1 | 4.15.0-1127.140~16.04.1 |
ubuntu/linux-azure-4.15 | <4.15.0-1127.140 | 4.15.0-1127.140 |
ubuntu/linux-azure-4.15 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-azure-5.11 | <5.11.0-1023.24~20.04.1 | 5.11.0-1023.24~20.04.1 |
ubuntu/linux-azure-5.11 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-azure-5.13 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-azure-5.15 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-azure-5.3 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-azure-5.4 | <5.4.0-1064.67~18.04.1 | 5.4.0-1064.67~18.04.1 |
ubuntu/linux-azure-5.4 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-azure-6.5 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-azure-edge | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-azure-fde | <5.4.0-1064.67 | 5.4.0-1064.67 |
ubuntu/linux-azure-fde | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-azure-fde-5.15 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-azure-fips | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-bluefield | <5.4.0-1022.25 | 5.4.0-1022.25 |
ubuntu/linux-bluefield | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-dell300x | <4.15.0-1031.36 | 4.15.0-1031.36 |
ubuntu/linux-dell300x | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-fips | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-gcp | <5.4.0-1058.62 | 5.4.0-1058.62 |
ubuntu/linux-gcp | <5.13.0-1008.9 | 5.13.0-1008.9 |
ubuntu/linux-gcp | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-gcp | <4.15.0-1112.126~16.04.1 | 4.15.0-1112.126~16.04.1 |
ubuntu/linux-gcp-4.15 | <4.15.0-1112.126 | 4.15.0-1112.126 |
ubuntu/linux-gcp-4.15 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-gcp-5.11 | <5.11.0-1024.26~20.04.1 | 5.11.0-1024.26~20.04.1 |
ubuntu/linux-gcp-5.11 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-gcp-5.13 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-gcp-5.15 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-gcp-5.3 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-gcp-5.4 | <5.4.0-1058.62~18.04.1 | 5.4.0-1058.62~18.04.1 |
ubuntu/linux-gcp-5.8 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-gcp-6.5 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-gcp-fips | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-gke | <5.4.0-1056.59 | 5.4.0-1056.59 |
ubuntu/linux-gke | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-gke-4.15 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-gke-5.0 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-gke-5.15 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-gke-5.3 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-gke-5.4 | <5.4.0-1056.59~18.04.1 | 5.4.0-1056.59~18.04.1 |
ubuntu/linux-gke-5.4 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-gkeop | <5.4.0-1027.28 | 5.4.0-1027.28 |
ubuntu/linux-gkeop | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-gkeop-5.15 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-gkeop-5.4 | <5.4.0-1027.28~18.04.1 | 5.4.0-1027.28~18.04.1 |
ubuntu/linux-gkeop-5.4 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-hwe | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-hwe | <4.15.0-163.171~16.04.1 | 4.15.0-163.171~16.04.1 |
ubuntu/linux-hwe-5.11 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-hwe-5.13 | <5.13.0-23.23~20.04.2 | 5.13.0-23.23~20.04.2 |
ubuntu/linux-hwe-5.13 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-hwe-5.15 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-hwe-5.4 | <5.4.0-91.102~18.04.1 | 5.4.0-91.102~18.04.1 |
ubuntu/linux-hwe-5.4 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-hwe-5.8 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-hwe-6.5 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-hwe-edge | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-ibm | <5.4.0-1008.9 | 5.4.0-1008.9 |
ubuntu/linux-ibm | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-ibm-5.15 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-ibm-5.4 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-intel | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-intel-5.13 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-intel-iotg | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-intel-iotg-5.15 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-iot | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-kvm | <4.15.0-1103.105 | 4.15.0-1103.105 |
ubuntu/linux-kvm | <5.4.0-1050.52 | 5.4.0-1050.52 |
ubuntu/linux-kvm | <5.13.0-1007.7 | 5.13.0-1007.7 |
ubuntu/linux-kvm | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-kvm | <4.4.0-1118.128 | 4.4.0-1118.128 |
ubuntu/linux-laptop | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-lowlatency | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-lowlatency-hwe-5.15 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-lowlatency-hwe-5.19 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-lowlatency-hwe-6.5 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-lts-xenial | <4.4.0-239.273~14.04.1 | 4.4.0-239.273~14.04.1 |
ubuntu/linux-lts-xenial | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-nvidia | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-nvidia-6.5 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-nvidia-6.8 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-nvidia-lowlatency | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-oem | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-oem-5.10 | <5.10.0-1051.53 | 5.10.0-1051.53 |
ubuntu/linux-oem-5.10 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-oem-5.13 | <5.13.0-1026.32 | 5.13.0-1026.32 |
ubuntu/linux-oem-5.13 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-oem-5.14 | <5.14.0-1007.7 | 5.14.0-1007.7 |
ubuntu/linux-oem-5.17 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-oem-5.6 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-oem-6.0 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-oem-6.1 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-oem-6.5 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-oem-6.8 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-oem-osp1 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-oracle | <4.15.0-1084.92 | 4.15.0-1084.92 |
ubuntu/linux-oracle | <5.4.0-1058.62 | 5.4.0-1058.62 |
ubuntu/linux-oracle | <5.13.0-1011.13 | 5.13.0-1011.13 |
ubuntu/linux-oracle | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-oracle | <4.15.0-1084.92~16.04.1 | 4.15.0-1084.92~16.04.1 |
ubuntu/linux-oracle-5.0 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-oracle-5.11 | <5.11.0-1023.24~20.04.1 | 5.11.0-1023.24~20.04.1 |
ubuntu/linux-oracle-5.11 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-oracle-5.13 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-oracle-5.15 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-oracle-5.3 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-oracle-5.4 | <5.4.0-1058.62~18.04.1 | 5.4.0-1058.62~18.04.1 |
ubuntu/linux-oracle-6.5 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-raspi | <5.4.0-1047.52 | 5.4.0-1047.52 |
ubuntu/linux-raspi | <5.13.0-1012.14 | 5.13.0-1012.14 |
ubuntu/linux-raspi | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-raspi-5.4 | <5.4.0-1047.52~18.04.1 | 5.4.0-1047.52~18.04.1 |
ubuntu/linux-raspi-5.4 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-raspi2 | <4.15.0-1099.106 | 4.15.0-1099.106 |
ubuntu/linux-raspi2 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-raspi2-5.3 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-riscv | <5.13.0-1007.7 | 5.13.0-1007.7 |
ubuntu/linux-riscv | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-riscv-5.11 | <5.11.0-1024.25~20.04.1 | 5.11.0-1024.25~20.04.1 |
ubuntu/linux-riscv-5.11 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-riscv-5.15 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-riscv-5.8 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-riscv-6.5 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-snapdragon | <4.15.0-1116.125 | 4.15.0-1116.125 |
ubuntu/linux-snapdragon | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-starfive | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-starfive-6.5 | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
ubuntu/linux-xilinx-zynqmp | <5.15~<4.4.288<5.4.151 | 5.15~ 4.4.288 5.4.151 |
debian/linux | 5.10.218-1 5.10.221-1 6.1.94-1 6.1.99-1 6.9.12-1 6.10.3-1 |
Mitigation for this issue is either not available or the currently available options don't meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Appears in the following advisories)