Rewterz
Rewterz Threat Alert – GuLoader Malspam Campaign – Active IOCs
November 25, 2021
Rewterz
Rewterz Threat Alert – Donot APT Group Targeting Pakistani Officials – Active IOCs
November 26, 2021

Rewterz Threat Advisory – CVE-2021-4002 – Linux Kernel Vulnerability

Severity

High

Analysis Summary

CVE-2021-4002

Linux Kernel could allow a local authenticated attacker to bypass security restrictions, caused by a flaw when running mmap() using the MAP_HUGETLB or shmget() with SHM_HUGETLB. By sending a specially-crafted request, an attacker could exploit this vulnerability to obtain or change data that resides on hugetlbfs.

Impact

  • Security Bypass

Affected Vendors

  • Linux

Affected Products

  • Linux Kernel 3.6

Remediation

Refer to Linux Security Advisory for patch, upgrade, or suggested workaround information.

https://www.kernel.org/