Site icon 지락문화예술공작단

LSN-0079-1: Kernel Live Patch Security Notice

LSN-0079-1: Kernel Live Patch Security Notice

It was discovered that the eBPF implementation in the Linux kernel did not
properly track bounds information for 32 bit registers when performing div
and mod operations. A local attacker could use this to possibly execute
arbitrary code.(CVE-2021-3600)

It was discovered that the virtual file system implementation in the Linux
kernel contained an unsigned to signed integer conversion error. A local
attacker could use this to cause a denial of service (system crash) or
execute arbitrary code.(CVE-2021-33909)
Source: LSN-0079-1: Kernel Live Patch Security Notice

Exit mobile version