An out-of-bounds (OOB) memory write flaw was found in the NFSD in the Linux kernel. Missing sanity may lead to a write beyond bmval[bmlen-1] in nfsd4_decode_bitmap4 in fs/nfsd/nfs4xdr.c. In this flaw, a local attacker with user privilege may gain access to out-of-bounds memory, leading to a system integrity and confidentiality threat.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2022-02-18T00:00:00

Updated: 2024-08-03T17:16:03.753Z

Reserved: 2021-12-10T00:00:00

Link: CVE-2021-4090

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-02-18T18:15:10.207

Modified: 2023-11-07T03:40:10.273

Link: CVE-2021-4090

cve-icon Redhat

Severity : Moderate

Publid Date: 2021-11-13T00:00:00Z

Links: CVE-2021-4090 - Bugzilla