Rewterz
Rewterz Threat Alert – Qakbot (Qbot) Malware – Active IOCs
September 28, 2021
Rewterz
Rewterz Threat Advisory – ICS: Multiple Siemens Solid Edge Vulnerabilities
September 29, 2021

Rewterz Threat Advisory – CVE-2021-20317 – Linux Kernel Vulnerability

Severity

Medium

Analysis Summary

CVE-2021-20317

Linux Kernel is vulnerable to a denial of service, caused by a flaw in the timerqueue_add function in lib/timerqueue.c. By sending a specially crafted request using a corrupted timer tree, a local authenticated attacker could exploit this vulnerability to slow down the server, and results a denial of service condition.

Impact

  • Denial of Service

Affected Vendors

  • Linux

Affected Products

  • Linux Kernel 5.3

Remediation

Refer to Linux Kernel Advisory for patch, upgrade or suggested workaround information.

https://git.kernel.org/pub/scm/linux/kernel/git/tip/tip.git/commit/?id=511885d7061eda3eb1faf3f57dcc936ff75863f1