← Back to browse · API

CVE-2021-41864

Severity
HIGH
CVSS
7.8
Published
2021-10-02
Modified
2026-08-05
First seen
2026-08-06
Aliases
-
Products
debian:debian_linux, fedoraproject:fedora, linux:linux_kernel, netapp:cloud_backup, netapp:h300e, netapp:h300e_firmware, netapp:h300s, netapp:h300s_firmware, netapp:h410c, netapp:h410c_firmware, netapp:h410s, netapp:h410s_firmware, netapp:h500e, netapp:h500e_firmware, netapp:h500s, netapp:h500s_firmware, netapp:h700e, netapp:h700e_firmware, netapp:h700s, netapp:h700s_firmware, netapp:hci_management_node, netapp:solidfire, netapp:solidfire_baseboard_management_controller, netapp:solidfire_baseboard_management_controller_firmware
Sources
nvd CVE-2021-41864

Description

prealloc_elems_and_freelist in kernel/bpf/stackmap.c in the Linux kernel before 5.14.12 allows unprivileged users to trigger an eBPF multiplication integer overflow with a resultant out-of-bounds write.

References