VDB
CVE-2021-33098
CVE-2021-33098
PUBLISHED
CVSS 5.5 MEDIUM
Improper input validation in the Intel(R) Ethernet ixgbe driver for Linux before version 3.17.3 may allow an authenticated user to potentially enable denial of service via local access.
EPSS 0.29% · 20.7th percentile
Risk Scores
CVSS 3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
EPSS Score
0.29%
20.7th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ubuntu:20.04:LTS | linux-aws-5.11 | *, 5.11.0-1014.15~20.04.1, 0 |
| Ubuntu:18.04:LTS | linux-snapdragon | 4.15.0-1066.73, 4.15.0-1069.76, 4.15.0-1070.77 |
| Ubuntu:18.04:LTS | linux-azure-5.4 | 5.4.0-1026.26~18.04.1, 0, 5.4.0-1020.20~18.04.1 |
| Ubuntu:Pro:16.04:LTS | linux-azure | 4.13.0-1011.14, 4.15.0-1021.21~16.04.1, 4.15.0-1022.22~16.04.1 |
| Ubuntu:Pro:14.04:LTS | linux-lts-xenial | 4.4.0-128.154~14.04.1, *, * |
| Ubuntu:20.04:LTS | linux-oem-5.10 | 5.10.0-1023.24, 5.10.0-1032.33, 5.10.0-1034.35 |
| Ubuntu:Pro:16.04:LTS | linux-kvm | 4.4.0-1033.39, 4.4.0-1036.42, 4.4.0-1037.43 |
| Ubuntu:18.04:LTS | linux-aws-5.0 | *, 5.0.0-1027.30, 5.0.0-1025.28 |
| Ubuntu:18.04:LTS | linux-aws-5.4 | 5.4.0-1022.22~18.04.1, 0, 5.4.0-1018.18~18.04.1 |
| Ubuntu:18.04:LTS | linux-oracle-5.3 | *, *, 5.3.0-1030.32~18.04.1 |
| Ubuntu:20.04:LTS | linux-intel-5.13 | 5.13.0-1010.10, 5.13.0-1009.9, 5.13.0-1014.15 |
| Ubuntu:18.04:LTS | linux-gke-5.4 | 5.4.0-1029.31~18.04.1, 5.4.0-1044.46~18.04.1, 5.4.0-1043.45~18.04.1 |
| Ubuntu:Pro:FIPS:20.04:LTS | linux-fips | 0, 5.4.0-1007.8 |
| Ubuntu:20.04:LTS | linux-bluefield | 5.4.0-1007.10, 5.4.0-1011.14, 5.4.0-1012.15 |
| Ubuntu:18.04:LTS | linux-oracle | 4.15.0-1014.16, 4.15.0-1050.54, 4.15.0-1022.25 |
| Ubuntu:20.04:LTS | linux-azure | 5.4.0-1009.9, 5.4.0-1026.26, 5.4.0-1025.25 |
| Ubuntu:Pro:FIPS-updates:18.04:LTS | linux-azure-fips | 4.15.0-2006.7, 4.15.0-2007.8, 4.15.0-2012.14 |
| Ubuntu:Pro:16.04:LTS | linux-aws-hwe | 4.15.0-1058.60~16.04.1, *, * |
| Ubuntu:18.04:LTS | linux-azure | 5.0.0-1027.29~18.04.1, 4.15.0-1004.4, 4.15.0-1003.3 |
| Ubuntu:Pro:FIPS-updates:20.04:LTS | linux-fips | 5.4.0-1026.30, 5.4.0-1028.32, 0 |
…and 70 more
Timeline
- Nov 9, 2021 CVE Published
- Nov 18, 2021 EPSS Score
- Jan 6, 2022 EPSS Score
- Jan 12, 2022 EPSS Score
- Mar 9, 2022 EPSS Score
- Apr 1, 2022 EPSS Score
- May 3, 2022 EPSS Score
- May 24, 2022 CVE Updated
- Jun 28, 2022 EPSS Score
- Aug 23, 2022 EPSS Score
- Dec 12, 2022 EPSS Score
- Feb 5, 2023 EPSS Score
References
- https://ubuntu.com/security/CVE-2021-33098 third-party-advisory
- https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00555.html third-party-advisory
- https://ubuntu.com/security/notices/USN-5343-1 vendor-advisory
- https://www.cve.org/CVERecord?id=CVE-2021-33098 third-party-advisory