Linux Kernel Memory Exhaustion Vulnerability

Linux Kernel Memory Exhaustion Vulnerability

CVE-2021-20265 · MEDIUM Severity

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

A flaw was found in the way memory resources were freed in the unix_stream_recvmsg function in the Linux kernel when a signal was pending. This flaw allows an unprivileged local user to crash the system by exhausting available memory. The highest threat from this vulnerability is to system availability.

Learn more about our Cis Benchmark Audit For Distribution Independent Linux.