A data leak flaw was found in the way XFS_IOC_ALLOCSP...
Vulnerability Description
A data leak flaw was found in the way XFS_IOC_ALLOCSP IOCTL in the XFS filesystem allowed for size increase of files with unaligned size. A local attacker could use this flaw to leak data on the XFS filesystem otherwise not accessible to them.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2021-4155
Credits & Attribution
No credits recorded in the NVD database.
References
- https://www.openwall.com/lists/oss-security/2022/01/10/1
- https://bugzilla.redhat.com/show_bug.cgi?id=2034813
- https://access.redhat.com/security/cve/CVE-2021-4155
- https://security-tracker.debian.org/tracker/CVE-2021-4155
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=983d8e60f50806f90534cc5373d0ce867e5aaf79
More from n/a
View All →Affected Vendor
Affected Software
Timeline
CVSS Vectors
Weaknesses (CWE)
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.