A flaw was found in the way memory resources were freed in the unixstreamrecvmsg function in the Linux kernel when a signal was pending. This flaw allows an unprivileged local user to crash the system by exhausting available memory. The highest threat from this vulnerability is to system availability.
[
{
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@fa0dc04df259ba2df3ce1920e9690c7842f8fa4b",
"target": {
"function": "unix_stream_read_generic",
"file": "net/unix/af_unix.c"
},
"deprecated": false,
"signature_version": "v1",
"id": "CVE-2021-20265-92e7dff2",
"digest": {
"length": 3104.0,
"function_hash": "297155057483864735486257763957113364891"
},
"signature_type": "Function"
},
{
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@fa0dc04df259ba2df3ce1920e9690c7842f8fa4b",
"target": {
"file": "net/unix/af_unix.c"
},
"deprecated": false,
"signature_version": "v1",
"id": "CVE-2021-20265-bf44dcf5",
"digest": {
"threshold": 0.9,
"line_hashes": [
"277799496164094904457864451518181833230",
"78105071978258060757413131759921429909",
"224203677394729458762981608093576967420",
"99251237762400446324941065888873936991"
]
},
"signature_type": "Line"
}
]