ZeroHour

CVE-2021-20265

CVSS 3.1
5.5 medium
EPSS
<1%p27
Published
()
Modified
Description

A flaw was found in the way memory resources were freed in the unix_stream_recvmsg function in the Linux kernel when a signal was pending. This flaw allows an unprivileged local user to crash the system by exhausting available memory. The highest threat from this vulnerability is to system availability.

Vendors
linuxoracle
Products
linux kernel, tekelec platform distribution
Weakness
CWE-400, CWE-401
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.