net/sunrpc/xdr.c in the Linux kernel before 5.13.4 allows remote attackers to cause a denial of service (xdrsetpagebase slab-out-of-bounds access) by performing many NFS 4.2 READPLUS operations.
[
{
"deprecated": false,
"source": "https://github.com/torvalds/linux/commit/6d1c0f3d28f98ea2736128ed3e46821496dc3a8c",
"id": "CVE-2021-38201-42fd68dd",
"target": {
"file": "net/sunrpc/xdr.c"
},
"digest": {
"line_hashes": [
"247442236583939531359316773006624519956",
"309689356055034071480599229422037194961",
"104028486088191287662178353855034680063",
"290142930999016738439143270883067909714",
"204678702954736708655193372105731720413",
"99763985832960557317934926445867690225",
"78288080087191955194765873277704122548"
],
"threshold": 0.9
},
"signature_type": "Line",
"signature_version": "v1"
},
{
"deprecated": false,
"source": "https://github.com/torvalds/linux/commit/6d1c0f3d28f98ea2736128ed3e46821496dc3a8c",
"id": "CVE-2021-38201-82251993",
"target": {
"file": "net/sunrpc/xdr.c",
"function": "xdr_set_page_base"
},
"digest": {
"function_hash": "266081739429102841604234109768960978953",
"length": 728.0
},
"signature_type": "Function",
"signature_version": "v1"
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-38201.json"