NULL pointer dereference and OOPS vulnerability in Linux kernel's perf core-book3s.c

NULL pointer dereference and OOPS vulnerability in Linux kernel's perf core-book3s.c

CVE-2021-38200 · MEDIUM Severity

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

arch/powerpc/perf/core-book3s.c in the Linux kernel before 5.12.13, on systems with perf_event_paranoid=-1 and no specific PMU driver support registered, allows local users to cause a denial of service (perf_instruction_pointer NULL pointer dereference and OOPS) via a "perf record" command.

Learn more about our Cis Benchmark Audit For Distribution Independent Linux.