CVE Database
/

CVE-2021-4154

Back to search

CVE-2021-4154

Published: Feb 4, 2022

Modified: Aug 3, 2024

PUBLISHED

Description

A use-after-free flaw was found in cgroup1_parse_param in kernel/cgroup/cgroup-v1.c in the Linux kernel's cgroup v1 parser. A local attacker with a user privilege could cause a privilege escalation by exploiting the fsconfig syscall parameter leading to a container breakout and a denial of service on the system.

VendorProductVersions

n/a

kernel

affected
Fixed in kernel 5.14 rc2

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now