VYPR
High severity7.8NVD Advisory· Published Jan 8, 2024· Updated Jun 17, 2026

CVE-2021-3600

CVE-2021-3600

Description

It was discovered that the eBPF implementation in the Linux kernel did not properly track bounds information for 32 bit registers when performing div and mod operations. A local attacker could use this to possibly execute arbitrary code.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

16
  • The Linux Kernel Organization/linuxv5
    Range: 0
  • Linux/Kernel9 versions
    cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*+ 8 more
    • cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*range: >=4.14.115,<4.14.308
    • cpe:2.3:o:linux:linux_kernel:5.11:rc1:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:5.11:rc2:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:5.11:rc3:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:5.11:rc4:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:5.11:rc5:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:5.11:rc6:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:5.11:rc7:*:*:*:*:*:*
    • (no CPE)
  • cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:*+ 2 more
    • cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:esm:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:esm:*:*:*
  • cpe:2.3:o:fedoraproject:fedora:34:*:*:*:*:*:*:*
  • cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*
  • osv-coords
    Range: < 4.18.0-348.el8

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.