An out-of-bounds (OOB) memory write flaw was found in the NFSD in the Linux kernel. Missing sanity may lead to a write beyond bmval[bmlen-1] in nfsd4decodebitmap4 in fs/nfsd/nfs4xdr.c. In this flaw, a local attacker with user privilege may gain access to out-of-bounds memory, leading to a system integrity and confidentiality threat.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-4090.json"
[
{
"events": [
{
"introduced": "0"
},
{
"fixed": "5.16"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "5.16-NA"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "5.16-rc1"
}
]
}
]