CVE-2021-22600 KEV
6.6
MEDIUM · CVSS 3.1 · EPSS 6.5% (pctl 94)
Patch first
On CISA KEV — known exploited in the wild, due 2022-05-02.
Description
A double free bug in packet_set_ring() in net/packet/af_packet.c can be exploited by a local user through crafted syscalls to escalate privileges or deny service. We recommend upgrading kernel past the effected versions or rebuilding past ec6af094ea28f0f2dda1a6a33b14cd57e36a9755
Scoring
| CVSS | 6.6 (MEDIUM, v3.1) |
|---|---|
| Vector | CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:C/C:L/I:L/A:H |
| EPSS | 6.53% — more likely to be exploited than 94% of all CVEs |
| Weakness | CWE-415 |
| On CISA KEV | yes — remediate by 2022-05-02 |
| Public exploit | none known |
| Published | 2022-01-26 |
| Last modified | 2026-06-17 |
CISA KEV
| Name | Linux Kernel Privilege Escalation Vulnerability |
|---|---|
| Added | 2022-04-11 |
| Due | 2022-05-02 |
| Vendor / product | Linux / Kernel |
| Ransomware use | none reported |
Affected (20)
| Vendor | Product |
|---|---|
| debian | debian linux |
| linux | linux kernel |
| netapp | 8300 |
| netapp | 8300 firmware |
| netapp | 8700 |
| netapp | 8700 firmware |
| netapp | a400 |
| netapp | a400 firmware |
| netapp | c400 |
| netapp | c400 firmware |
| netapp | h300s |
| netapp | h300s firmware |
| netapp | h410c |
| netapp | h410c firmware |
| netapp | h410s |
| netapp | h410s firmware |
| netapp | h500s |
| netapp | h500s firmware |
| netapp | h700s |
| netapp | h700s firmware |
References
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit?id=ec6af094ea28f0f2dda1a6a33b14cd57e36a9755
- https://lists.debian.org/debian-lts-announce/2022/03/msg00012.html
- https://security.netapp.com/advisory/ntap-20230110-0002/
- https://www.debian.org/security/2022/dsa-5096
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit?id=ec6af094ea28f0f2dda1a6a33b14cd57e36a9755
- https://lists.debian.org/debian-lts-announce/2022/03/msg00012.html
- https://security.netapp.com/advisory/ntap-20230110-0002/
- https://www.debian.org/security/2022/dsa-5096
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2021-22600
→ the Explorer · watch your stack · NVD