CVE-2021-20317
Summary
| CVE | CVE-2021-20317 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-09-27 11:15:00 UTC |
| Updated | 2022-06-14 11:15:00 UTC |
| Description | A flaw was found in the Linux kernel. A corrupted timer tree caused the task wakeup to be missing in the timerqueue_add function in lib/timerqueue.c. This flaw allows a local attacker with special user privileges to cause a denial of service, slowing and eventually stopping the system while running OSP. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| kernel/git/tip/tip.git - Unnamed repository; edit this file 'description' to name the repository. |
MISC |
git.kernel.org |
|
| [SECURITY] [DLA 2941-1] linux-4.19 security update |
MLIST |
lists.debian.org |
|
| cert-portal.siemens.com/productcert/pdf/ssa-222547.pdf |
CONFIRM |
cert-portal.siemens.com |
|
| 2005258 – (CVE-2021-20317) CVE-2021-20317 kernel: timer tree corruption leads to missing wakeup and system freeze |
MISC |
bugzilla.redhat.com |
|
| Debian -- Security Information -- DSA-5096-1 linux |
DEBIAN |
www.debian.org |
|
| [SECURITY] [DLA 2843-1] linux security update |
MLIST |
lists.debian.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 159535 Oracle Enterprise Linux Security Update for kernel (ELSA-2021-4647)
- 159760 Oracle Enterprise Linux Security Update for unbreakable enterprise kernel-container (ELSA-2022-9314)
- 159763 Oracle Enterprise Linux Security Update for unbreakable enterprise kernel (ELSA-2022-9313)
- 178943 Debian Security Update for linux (DLA 2843-1)
- 179117 Debian Security Update for linux (DSA 5096-1)
- 179119 Debian Security Update for linux-4.19 (DLA 2941-1)
- 179946 Debian Security Update for linux (CVE-2021-20317)
- 198617 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5209-1)
- 239884 Red Hat Update for kernel (RHSA-2021:4647)
- 239887 Red Hat Update for kernel-rt (RHSA-2021:4648)
- 239890 Red Hat Update for kernel security (RHSA-2021:4650)
- 239892 Red Hat Update for kernel-rt (RHSA-2021:4646)
- 239917 Red Hat Update for kernel (RHSA-2021:4871)
- 239918 Red Hat Update for kernel-rt (RHSA-2021:4875)
- 352869 Amazon Linux Security Advisory for kernel: ALAS2-2021-1719
- 353242 Amazon Linux Security Advisory for kernel : ALAC2012-2022-036
- 353243 Amazon Linux Security Advisory for kmod-mlx5 : ALAC2012-2022-037
- 353244 Amazon Linux Security Advisory for kmod-sfc : ALAC2012-2022-038
- 356241 Amazon Linux Security Advisory for microvm-kernel : ALASMICROVM-KERNEL-4.14-2023-001
- 590976 Siemens SCALANCE LPE9403 Third-Party Multiple Vulnerabilities (ICSA-22-167-09) (SSA-222547)
- 940174 AlmaLinux Security Update for kernel (ALSA-2021:4647)
- 960003 Rocky Linux Security Update for kernel-rt (RLSA-2021:4646)
- 960094 Rocky Linux Security Update for kernel (RLSA-2021:4647)