CVE-2021-4154 describes a use-after-free vulnerability in the Linux kernel's cgroup v1 parser, specifically affecting Linux, NetApp, and Red Hat products. This high-severity flaw (CVSS 8.8) allows a local attacker with user privileges to achieve privilege escalation, potentially leading to container breakout and denial of service due to its low attack complexity and high impact on confidentiality, integrity, and availability. While there is no known active exploitation or public exploit code (Metasploit, Nuclei, ExploitDB), the vulnerability has garnered some community discussion and media coverage, including an article about Google's increased rewards for Linux kernel zero-days.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 5.1, < 5.4.134CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 5.5, < 5.10.52CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 5.11, < 5.12.19CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 5.13, < 5.13.4CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
5.14CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:5.14:rc1:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
A use-after-free flaw was found in cgroup1_parse_param in kernel/cgroup/cgroup-v1.c in the Linux kernel's cgroup v1 parser. A local attacker with a user privilege could cause a privilege escalation by exploiting the fsconfig syscall parameter leading to a container breakout and a denial of service on the system.
Feb 8, 2022Multiple Linux kernel vulnerabilities (CVE-2021-4154, CVE-2021-22600, CVE-2022-0185)
Feb 4, 2022Multiple Linux kernel vulnerabilities (CVE-2021-4154, CVE-2021-22600, CVE-2022-0185)
Feb 2, 2022kernel: local privilege escalation by exploiting the fsconfig syscall parameter leads to container breakout
Dec 14, 2021