A data leak flaw was found in the way XFS_IOC_ALLOCSP IOCTL in the XFS filesystem allowed for size increase of files with unaligned size. A local attacker could use this flaw to leak data on the XFS filesystem otherwise not accessible to them.
Advisories
Source ID Title
Debian DLA Debian DLA DLA-2940-1 linux security update
Debian DLA Debian DLA DLA-2941-1 linux-4.19 security update
Debian DSA Debian DSA DSA-5050-1 linux security update
Debian DSA Debian DSA DSA-5096-1 linux security update
EUVD EUVD EUVD-2021-34023 A data leak flaw was found in the way XFS_IOC_ALLOCSP IOCTL in the XFS filesystem allowed for size increase of files with unaligned size. A local attacker could use this flaw to leak data on the XFS filesystem otherwise not accessible to them.
Ubuntu USN Ubuntu USN USN-5278-1 Linux kernel (OEM) vulnerabilities
Ubuntu USN Ubuntu USN USN-5294-1 Linux kernel vulnerabilities
Ubuntu USN Ubuntu USN USN-5294-2 Linux kernel vulnerabilities
Ubuntu USN Ubuntu USN USN-5295-1 Linux kernel (HWE) vulnerabilities
Ubuntu USN Ubuntu USN USN-5295-2 Linux kernel vulnerabilities
Ubuntu USN Ubuntu USN USN-5297-1 Linux kernel (GKE) vulnerabilities
Ubuntu USN Ubuntu USN USN-5298-1 Linux kernel vulnerabilities
Ubuntu USN Ubuntu USN USN-5362-1 Linux kernel (Intel IOTG) vulnerabilities
Ubuntu USN Ubuntu USN USN-5884-1 Linux kernel (AWS) vulnerabilities
Ubuntu USN Ubuntu USN USN-5926-1 Linux kernel vulnerabilities
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2024-08-03T17:16:04.255Z

Reserved: 2021-12-22T00:00:00

Link: CVE-2021-4155

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-08-24T16:15:09.607

Modified: 2024-11-21T06:37:00.903

Link: CVE-2021-4155

cve-icon Redhat

Severity : Important

Publid Date: 2022-01-10T06:36:00Z

Links: CVE-2021-4155 - Bugzilla

cve-icon OpenCVE Enrichment

No data.